DRIVERS: A platform for dynamic risk assessment of emergent cyber threats for industrial control systems

被引:1
|
作者
Nobili, Martina [1 ]
Fioravanti, Camilla [1 ]
Guarino, Simone [1 ]
Ansaldi, Silvia Maria [2 ]
Milazzo, Maria Francesca [3 ]
Bragatto, Paolo [1 ]
Setola, Roberto [1 ]
机构
[1] Univ Campus Biomed Rome, Dept Engn, Via A del Portillo 21, I-00128 Rome, Italy
[2] INAIL Italian Natl Inst Insurance Accid Work, Dept Technol Innovat, I-00078 Rome, Italy
[3] Univ Messina, Dept Ind Chem & Mat Engn, Salita Sperone 31, I-98166 Messina, Italy
关键词
D O I
10.1109/MED59994.2023.10185686
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A good cyber risk assessment is nowadays a matter of paramount importance for industrial systems and critical infrastructures. In a radical change and continuous development scenario such as that represented by Industry 4.0 plants, it is no longer sufficient to consider only static risks relating to the analysis of past data, but there is a need for a risk assessment that takes into account risks arising from emergent threats. In this paper, we propose a novel methodology for dynamic risk assessment that takes into account both the known values related to the static components of the system and the risks related to the emergence of new threats that have not yet been verified but are plausible according to experts. To achieve this, as part of the national "DRIVERS" project, an analysis of the most significant cyber-security factors was conducted to classify them in terms of relevance, considering both risk acceleration and risk mitigation aspects. This assessment is carried out by means of the multi-criteria decision support technique Analytic Hierarchy Process (AHP), performed by dividing the threat into a hierarchical structure.
引用
收藏
页码:395 / 400
页数:6
相关论文
共 50 条
  • [21] ICS-CRAT: A Cyber Resilience Assessment Tool for Industrial Control Systems
    Haque, Md Ariful
    Shetty, Sachin
    Krishnappa, Bheshaj
    2019 IEEE 5TH INTL CONFERENCE ON BIG DATA SECURITY ON CLOUD (BIGDATASECURITY) / IEEE INTL CONFERENCE ON HIGH PERFORMANCE AND SMART COMPUTING (HPSC) / IEEE INTL CONFERENCE ON INTELLIGENT DATA AND SECURITY (IDS), 2019, : 273 - 281
  • [22] Cybersecurity Risk Assessment Strategies in Industrial Control Systems
    Gale, Tim
    CHEMICAL ENGINEERING PROGRESS, 2023, 119 (12) : 35 - 39
  • [23] A Logical Risk Assessment Schema for Industrial Control Systems
    Wang Yufei
    Ye Qian
    PROCEEDINGS OF THE 2016 INTERNATIONAL FORUM ON MECHANICAL, CONTROL AND AUTOMATION (IFMCA 2016), 2017, 113 : 556 - 560
  • [24] Winning the battle with cyber risk identification tools in industrial control systems: A review
    Rotibi, Ayo
    Saxena, Neetesh
    Burnap, Pete
    IET CYBER-PHYSICAL SYSTEMS: THEORY & APPLICATIONS, 2024, 9 (04) : 350 - 365
  • [25] Asset-Based Dynamic Impact Assessment of Cyberattacks for Risk Analysis in Industrial Control Systems
    Li, Xuan
    Zhou, Chunjie
    Tian, Yu-Chu
    Xiong, Naixue
    Qin, Yuanqing
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2018, 14 (02) : 608 - 618
  • [26] A Fuzzy Probability Bayesian Network Approach for Dynamic Cybersecurity Risk Assessment in Industrial Control Systems
    Zhang, Qi
    Zhou, Chunjie
    Tian, Yu-Chu
    Xiong, Naixue
    Qin, Yuanqing
    Hu, Bowen
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2018, 14 (06) : 2497 - 2506
  • [27] Supporting Cyber Risk Assessment of Power Control Systems with experimental data
    Dondossola, G.
    Garrone, F.
    Szanto, J.
    2009 IEEE/PES POWER SYSTEMS CONFERENCE AND EXPOSITION, VOLS 1-3, 2009, : 805 - 807
  • [28] Analysis of Cyber Security for Industrial Control Systems
    Drias, Zakarya
    Serhrouchni, Ahmed
    Vogel, Olivier
    2015 INTERNATIONAL CONFERENCE ON CYBER SECURITY OF SMART CITIES, INDUSTRIAL CONTROL AND COMMUNICATIONS (SSIC), 2015,
  • [29] Cyber Security Provision for Industrial Control Systems
    Amanowicz, Marek
    Jarmakiewicz, Jacek
    TRENDS IN ADVANCED INTELLIGENT CONTROL, OPTIMIZATION AND AUTOMATION, 2017, 577 : 611 - 620