Development of a cyber security risk model using Bayesian networks

被引:62
|
作者
Shin, Jinsoo [1 ]
Son, Hanseong [2 ]
Ur, Rahman Khalil [1 ]
Heo, Gyunyoung [1 ]
机构
[1] Kyung Hee Univ, Yongin 446701, Gyeonggi Do, South Korea
[2] Joongbu Univ, Geumsan Gun 312702, Chungnam, South Korea
关键词
Cyber security; Activity-quality; Architecture analysis; Bayesian network; Reactor protection system; Research reactor; FRAMEWORK;
D O I
10.1016/j.ress.2014.10.006
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
Cyber security is an emerging safety issue in the nuclear industry, especially in the instrumentation and control (I&C) field. To address the cyber security issue systematically, a model that can be used for cyber security evaluation is required. In this work, a cyber security risk model based on a Bayesian network is suggested for evaluating cyber security for nuclear facilities in an integrated manner. The suggested model enables the evaluation of both the procedural and technical aspects of cyber security, which are related to compliance with regulatory guides and system architectures, respectively. The activity-quality analysis model was developed to evaluate how well people and/or organizations comply with the regulatory guidance associated with cyber security. The architecture analysis model was created to evaluate vulnerabilities and mitigation measures with respect to their effect on cyber security. The two models are integrated into a single model, which is called the cyber security risk model, so that cyber security can be evaluated from procedural and technical viewpoints at the same time. The model was applied to evaluate the cyber security risk of the reactor protection system (RPS) of a research reactor and to demonstrate its usefulness and feasibility. (C) 2014 Elsevier Ltd. All rights reserved.
引用
收藏
页码:208 / 217
页数:10
相关论文
共 50 条
  • [21] Using dynamic Bayesian networks to model technical risk management efficiency
    Halabi, Anan
    Kenett, Ron S.
    Sacerdote, Laura
    [J]. QUALITY AND RELIABILITY ENGINEERING INTERNATIONAL, 2017, 33 (06) : 1179 - 1196
  • [22] Threat Analysis of Cyber Security in Wireless Adhoc Networks Using Hybrid Neural Network Model
    Demidov, R. A.
    Zegzhda, P. D.
    Kalinin, M. O.
    [J]. AUTOMATIC CONTROL AND COMPUTER SCIENCES, 2018, 52 (08) : 971 - 976
  • [23] Planning exploitation graph-Bayesian networks model for information security risk frequency measurement
    Wang, Zhen-Zhen
    Jiang, Xin
    Wu, Xiao-Yue
    Tan, Xu
    [J]. Tien Tzu Hsueh Pao/Acta Electronica Sinica, 2010, 38 (2A): : 18 - 22
  • [24] ASSESSING SECURITY RISK FOR WIRELESS SENSOR NETWORKS UNDER CYBER ATTACK
    Yarbrough, Brian
    Wagner, Neal
    [J]. PROCEEDINGS OF THE ANNUAL SIMULATION SYMPOSIUM (ANSS 2018), 2018, 50 (02):
  • [25] RISK ANALYSIS IN CYBER SITUATION AWARENESS USING BAYESIAN APPROACH
    Bode, Moyinoluwa Abidemi
    Alese, Boniface Kayode
    Oluwadare, Samuel Adebayo
    Thompson, Aderonke Favour-Bethy
    [J]. 2015 International Conference on Cyber Situational Awareness, Data Analytics and Assessment (CyberSA), 2015,
  • [26] Quantifying cyber security risk
    Henrie, Morgan
    Liddell, Paul
    [J]. CONTROL ENGINEERING, 2008, 55 (03) : P12 - +
  • [27] Quantifying cyber security risk
    Henrie, Morgan
    Liddell, Paul
    [J]. CONTROL ENGINEERING, 2008, 55 (05) : P12 - +
  • [28] Governing Cyber Security through Networks: An Analysis of Cyber Security Coordination in Belgium
    Rondelez, Rafael
    [J]. INTERNATIONAL JOURNAL OF CYBER CRIMINOLOGY, 2018, 12 (01): : 300 - 315
  • [29] Assessing the risk of an aquaculture development on shorebirds using a Bayesian belief model
    Gibbs, Mark T.
    [J]. HUMAN AND ECOLOGICAL RISK ASSESSMENT, 2007, 13 (01): : 156 - 179
  • [30] Smart Water Networks and Cyber Security
    Rasekh, Amin
    Hassanzadeh, Amin
    Mulchandani, Shaan
    Modi, Shimon
    Banks, M. Katherine
    [J]. JOURNAL OF WATER RESOURCES PLANNING AND MANAGEMENT, 2016, 142 (07)