DRIVERS: A platform for dynamic risk assessment of emergent cyber threats for industrial control systems

被引:1
|
作者
Nobili, Martina [1 ]
Fioravanti, Camilla [1 ]
Guarino, Simone [1 ]
Ansaldi, Silvia Maria [2 ]
Milazzo, Maria Francesca [3 ]
Bragatto, Paolo [1 ]
Setola, Roberto [1 ]
机构
[1] Univ Campus Biomed Rome, Dept Engn, Via A del Portillo 21, I-00128 Rome, Italy
[2] INAIL Italian Natl Inst Insurance Accid Work, Dept Technol Innovat, I-00078 Rome, Italy
[3] Univ Messina, Dept Ind Chem & Mat Engn, Salita Sperone 31, I-98166 Messina, Italy
关键词
D O I
10.1109/MED59994.2023.10185686
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A good cyber risk assessment is nowadays a matter of paramount importance for industrial systems and critical infrastructures. In a radical change and continuous development scenario such as that represented by Industry 4.0 plants, it is no longer sufficient to consider only static risks relating to the analysis of past data, but there is a need for a risk assessment that takes into account risks arising from emergent threats. In this paper, we propose a novel methodology for dynamic risk assessment that takes into account both the known values related to the static components of the system and the risks related to the emergence of new threats that have not yet been verified but are plausible according to experts. To achieve this, as part of the national "DRIVERS" project, an analysis of the most significant cyber-security factors was conducted to classify them in terms of relevance, considering both risk acceleration and risk mitigation aspects. This assessment is carried out by means of the multi-criteria decision support technique Analytic Hierarchy Process (AHP), performed by dividing the threat into a hierarchical structure.
引用
收藏
页码:395 / 400
页数:6
相关论文
共 50 条
  • [31] Industrial Control Systems: Cyber Policies and Strategies
    Gosine, Anil
    JOURNAL AMERICAN WATER WORKS ASSOCIATION, 2020, 112 (06): : 48 - 54
  • [32] Improving the cyber resilience of industrial control systems
    Chaves, Andrew
    Rice, Mason
    Dunlap, Stephen
    Pecarina, John
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2017, 17 : 30 - 48
  • [33] Risk Assessment Method for Cyber Security of Cyber Physical Systems
    Wu, Wenbo
    Kang, Rui
    Li, Zi
    PROCEEDINGS OF THE 2015 FIRST INTERNATIONAL CONFERENCE ON RELIABILITY SYSTEMS ENGINEERING 2015 ICRSE, 2015,
  • [34] Multimodel-Based Incident Prediction and Risk Assessment in Dynamic Cybersecurity Protection for Industrial Control Systems
    Zhang, Qi
    Zhou, Chunjie
    Xiong, Naixue
    Qin, Yuanqing
    Li, Xuan
    Huang, Shuang
    IEEE TRANSACTIONS ON SYSTEMS MAN CYBERNETICS-SYSTEMS, 2016, 46 (10): : 1429 - 1444
  • [35] SEAG: A novel dynamic security risk assessment method for industrial control systems with consideration of social engineering
    Liu, Kaixiang
    Xie, Yongfang
    Xie, Shiwen
    Sun, Limin
    JOURNAL OF PROCESS CONTROL, 2023, 132
  • [36] Consider the Consequences: A Risk Assessment Approach for Industrial Control Systems
    Kim, Aram
    Oh, Junhyoung
    Kwon, Kookheui
    Lee, Kyungho
    SECURITY AND COMMUNICATION NETWORKS, 2022, 2022
  • [37] A cybersecurity risk assessment methodology for industrial automation control systems
    Brancati, Francesco
    Mongelli, Diamantea
    Mariotti, Francesco
    Lollini, Paolo
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2025, 24 (02)
  • [38] Quantitative evaluation model for dynamic performance analysis of security risk in industrial cyber physics systems
    Sun Z.-W.
    Zhang S.-G.
    Kongzhi yu Juece/Control and Decision, 2021, 36 (08): : 1939 - 1946
  • [39] Cyber-Physical Security Risk Assessment for Train Control and Monitoring Systems
    Rekik, Mouna
    Gransart, Christophe
    Berbineau, Marion
    2018 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2018,
  • [40] Cyber Risk Assessment of Power Control Systems - A Metrics weighed by Attack Experiments
    Dondossola, G.
    Garrone, F.
    Szanto, J.
    2011 IEEE POWER AND ENERGY SOCIETY GENERAL MEETING, 2011,