The drift of industrial control systems to pseudo security

被引:0
|
作者
Donnelly, Peter [1 ]
Abuhmida, Mabrouka [1 ]
Tubb, Christopher [1 ]
机构
[1] Univ South Wales, Comp & Math, Pontypridd CF37 1DL, Wales
关键词
Industrial control systems; Security; Safety; Complexity; Interdependence; Integration;
D O I
10.1016/j.ijcip.2022.100535
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the promise of a synergistic impact on the Efficiency-Thoroughness Trade-Off, Marketing is increasingly promoting types of Industrial Control Systems (ICS) that by some means combine the two usually segregated core ICS functions into one. A Basic Process Control System (BPCS) is combined with a Safety-Instrumented System (SIS) in a physically integrated form factor using shared resources of some kind. This paper suggests such a strategic choice of technology can result in functional safety (FS) hazards or security vulnerabilities, giving rise to resilience concerns. It takes a sceptical view of such an approach and instead proposes strict segregation of such functions and resources. In the context of critical national infrastructure (CNI), where potentially high consequence events (HCE) may arise from unplanned incidents, the outcome of this paper is to warn against the use of such architecture - even beyond that arena. Both ancient and modern, yet similarly strategic, historical decisions are used as metaphors to illustrate how sometimes insufficiently scrutinised technologies can be later regretted. Practical technical, organisational, and cultural measures are offered to steer against the headwind of commercial pressures in promoting integrated FS and security of the BPCS-SIS environment. A contribution is made of evidence-based, business intelligence gathering measures for BPCS-SIS vendor selection together with a proposal for an alternative, adopted application of proven Uncertainty Assessment Reporting techniques for industrial certification bodies and business stakeholders alike.
引用
收藏
页数:8
相关论文
共 50 条
  • [1] Security intelligence for industrial control systems
    Amrein, A.
    Angeletti, V.
    Beitler, A.
    Nemet, M.
    Reiser, M.
    Riccetti, S.
    Stoecklin, M. Ph
    Wespi, A.
    [J]. IBM JOURNAL OF RESEARCH AND DEVELOPMENT, 2016, 60 (04)
  • [2] Cyber Security for Industrial Control Systems
    Cunningham, Steve
    [J]. POWER ENGINEERING, 2011, 115 (11) : 142 - +
  • [3] IT SECURITY ASPECTS OF INDUSTRIAL CONTROL SYSTEMS
    Holecko, P.
    Krbilova, I.
    [J]. ADVANCES IN ELECTRICAL AND ELECTRONIC ENGINEERING, 2006, 5 (01) : 136 - 139
  • [4] Security Monitoring for Industrial Control Systems
    Coletta, Alessio
    Armando, Alessandro
    [J]. SECURITY OF INDUSTRIAL CONTROL SYSTEMS AND CYBER PHYSICAL SYSTEMS, 2016, 9588 : 48 - 62
  • [5] Survey of Industrial Control Systems Security
    Yang, Ting
    Zhang, Jiayuan
    Huang, Zaiqi
    Chen, Yujie
    Huang, Chenglong
    Zhou, Wei
    Liu, Peng
    Feng, Tao
    Zhang, Yuqing
    [J]. Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2022, 59 (05): : 1035 - 1053
  • [6] Cyber Security Provision for Industrial Control Systems
    Amanowicz, Marek
    Jarmakiewicz, Jacek
    [J]. TRENDS IN ADVANCED INTELLIGENT CONTROL, OPTIMIZATION AND AUTOMATION, 2017, 577 : 611 - 620
  • [7] Industrial Control Systems Security: What is happening?
    Krotofil, Marina
    Gollmann, Dieter
    [J]. 2013 11TH IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), 2013, : 664 - 669
  • [8] Industrial Control Systems Security: What is happening?
    Krotofil, Maryna
    Gollmann, Dieter
    [J]. 2013 11TH IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), 2013, : 670 - 675
  • [9] Strategic Security Protection for Industrial Control Systems
    Takagi, Hitomi
    Morita, Takahito
    Matta, Masafumi
    Moritani, Hiroki
    Hamaguchi, Takashi
    Jing, Sun
    Koshijima, Ichiro
    Hashimoto, Yoshihiro
    [J]. 2015 54TH ANNUAL CONFERENCE OF THE SOCIETY OF INSTRUMENT AND CONTROL ENGINEERS OF JAPAN (SICE), 2015, : 986 - 992
  • [10] Techniques for Enhancing Security in Industrial Control Systems
    Varadharajan, Vijay
    Tupakula, Uday
    Karmakar, Kallol Krishna
    [J]. ACM TRANSACTIONS ON CYBER-PHYSICAL SYSTEMS, 2024, 8 (01)