Measures for Mitigation of Security Risks in digitally supported Construction Projects Part 2: Mitigation of Security Risks when using BIM Methods

被引:0
|
作者
Wittenborn, Arne [1 ]
Cadez, Ivan [2 ]
Schumann, Rene [3 ]
机构
[1] HOCHTIEF ViCon GmbH, Fachbereich Spezialprojekte & Innovat, Alfredstr 236, D-45133 Essen, Germany
[2] Tech Univ Dortmund, Lehrstuhl Immobilienwirtschaft & Bauorg, August Schmidt Str 8, D-44227 Dortmund, Germany
[3] HOCHTIEF ViCon GmbH, Alfredstr 236, D-45133 Essen, Germany
关键词
information security; security risks; Building Information Modeling (BIM); mitigation; Building Information Modelling;
D O I
10.1002/bate.201900099
中图分类号
TU [建筑科学];
学科分类号
0813 ;
摘要
Handling of information security in the digitalization of construction projects - part 2: mitigation of security risks by applying the BIM method The security risks identified in the first essay have consequences on many areas of the digitally supported project execution. Required personnel and technological resources have to be coordinated in line with a superordinated process. However, the current lack of awareness of many project stakeholders regarding the risk potentials for digitalized project information complicates the implementation of a holistic information security approach in BIM-based projects. Therefore, exemplary measures are introduced in this part of the essay, how the identified security risks areas can be mitigated. In accordance with the categorization into procedural, personnel and technological risk areas, recommended measures for each of the 16 identified security risks are introduced. A risk classification into five categories (A, B1, B2, B3, C) derived from this indicates the relevance, or priority respectively, of the risks in the development of an information security approach. On this basis, the approaches of ISO 19650-5 regarding its implementation on project level are introduced and evaluated. Concluding, the current state of development is summarized and further need for action is appointed.
引用
收藏
页码:164 / 170
页数:7
相关论文
共 37 条
  • [1] Information Security Risks, Benefits, and Mitigation Measures in Cloud Sourcing
    Wulf, Frederik
    Strahringer, Susanne
    Westner, Markus
    [J]. 2019 IEEE 21ST CONFERENCE ON BUSINESS INFORMATICS (CBI), VOL 1, 2019, : 258 - 267
  • [2] Dynamic Control and Mitigation of Interdependent IT Security Risks
    Mounzer, Jeffrey
    Alpcan, Tansu
    Bambos, Nick
    [J]. 2010 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, 2010,
  • [3] Mitigation of security risks at maritime ports of entry
    Munyai, Mkateko Phillis
    Govender, Doraval
    [J]. JOURNAL OF TRANSPORTATION SECURITY, 2024, 17 (01)
  • [4] Mitigation for cloud computing security risks and governance
    Jabez, J.
    Narmadha, R.
    Porkodi, S.
    Devi, L.
    [J]. International Journal of Cloud Computing, 2022, 11 (5-6) : 560 - 567
  • [5] Handling of information security in digitally supported construction projects - part 1: risk potentials in the application of the BIM methodology
    Wittenborn, Arne
    Cadez, Ivan
    Schumann, Rene
    [J]. BAUTECHNIK, 2020, 97 (03) : 156 - 163
  • [6] BYOD Security Risks and Mitigation Strategies: Insights from IT Security Experts
    Palanisamy, Rathika
    Norman, Azah Anir
    Kiah, Laiha Mat
    [J]. JOURNAL OF ORGANIZATIONAL COMPUTING AND ELECTRONIC COMMERCE, 2021, 31 (04) : 320 - 342
  • [7] Steganographic Authentication in Cloud Storage for Mitigation of Security Risks
    Wazirali, Raniyah
    Chaczko, Zenon
    Chiang, Everlyn
    [J]. 2017 25TH INTERNATIONAL CONFERENCE ON SYSTEMS ENGINEERING (ICSENG), 2017, : 451 - 458
  • [8] Connected Vehicle Security: Overview of Risks and Mitigation Strategies
    Riffee, Allen A.
    Riffee, Asa
    Youssef, Tarek A.
    [J]. SOUTHEASTCON 2024, 2024, : 1432 - 1437
  • [9] The (In)Security of Smart Cities: Vulnerabilities, Risks, Mitigation, and Prevention
    Kitchin, Rob
    Dodge, Martin
    [J]. JOURNAL OF URBAN TECHNOLOGY, 2019, 26 (02) : 47 - 65
  • [10] Security risks: Management and mitigation in the software life cycle
    Gilliam, DP
    [J]. THIRTEENTH IEEE INTERNATIONAL WORKSHOPS ON ENABLING TECHNOLOGIES: INFRASTRUCTURE FOR COLLABORATIVE ENTERPRISES, PROCEEDINGS, 2004, : 211 - 216