Συνέδριο

Συγγραφείς: Spyridopoulos T., Topa I., Tryfonas T., Karyda M.
Τίτλος: A holistic approach for Cyber Assurance of Critical Infrastructure with the Viable System Model
Συνέδριο: 29th IFIP TC 11 International Conference, SEC 2014
Editors:
Ed: Όχι
Eds: Όχι
Σελίδες: 438-445
Να εμφανιστεί: Όχι
Μήνας: Ιούνιος
Έτος: 2014
Τόπος: Marrakech, Morocco
Εκδότης: Springer Berlin Heidelberg
Δεσμός: http://link.springer.com/chapter/10.1007%2F978-3-642-55415-5_37
Όνομα αρχείου:
Περίληψη: Industrial Control Systems (ICSs) are of the most important compo- nents of National Critical Infrastructure. They can provide control capabilities in complex systems of critical importance such as energy production and distribu- tion, transportation, telecoms etc. Protection of such systems is the cornerstone of essential service provision with resilience and in timely manner. Effective risk management methods form the basis for the protection of an Industrial Control System. However, the nature of ICSs render traditional risk management meth- ods insufficient. The proprietary character and the complex interrelationships of the various systems that form an ICS, the potential impacts outside its bound- aries, along with emerging trends such as the exposure to the Internet, necessitate revisiting traditional risk management methods, in a way that treat an ICS as a system-of-systems rather than a single, one-off entity. Towards this direction, in this paper we present enhancements to the traditional risk management methods at the phase of risk assessment, by utilising the cybernetic construct of the Vi- able System Model (VSM) as a means towards a holistic view of the risks against Critical Infrastructure. For the purposes of our research, utilising VSM’s recur- sive nature, we model the Supervisory Control and Data Acquisition (SCADA) system, a most commonly used ICS, as a VSM and identify the various assets, in- teractions with the internal and external environment, threats and vulnerabilities.