Quantitative Assessment of Safety and Security of System Architectures for Cyberphysical Systems Using the NFR Approach

被引:25
|
作者
Subramanian, Nary [1 ]
Zalewski, Janusz [2 ]
机构
[1] Univ Texas Tyler, Coll Engn & Comp Sci, Dept Comp Sci, Tyler, TX 75799 USA
[2] Florida Gulf Coast Univ, UA Whitaker Coll Engn, Dept Bioengn & Software Engn, Ft Myers, FL 33965 USA
来源
IEEE SYSTEMS JOURNAL | 2016年 / 10卷 / 02期
关键词
Cyberphysical systems (CPSs); nonfunctional requirement (NFR) approach; safety; security; system architecture assessment;
D O I
10.1109/JSYST.2013.2294628
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyberphysical systems (CPSs) are an integral part of modern societies since most critical infrastructures are controlled by these systems. CPSs incorporate computer-based and network-based technologies for the monitoring and control of physical processes. Two critically important properties of CPSs are safety and security. It is widely accepted that properties such as safety and security should be considered at the system design phase itself, particularly at the architectural level wherein such properties are embedded in the final system. However, safety and security are interrelated, and there seems to be a lack of techniques that consider both of them together. The nonfunctional requirement (NFR) approach is a technique that allows the simultaneous evaluation of both safety and security at the architectural level. In this paper, we apply the NFR approach to quantitatively evaluate the safety and security properties of an example CPS, i.e., an oil pipeline control system. We conclude that the NFR approach provides practical results that can be used by designers and developers to create safe and secure CPSs.
引用
收藏
页码:397 / 409
页数:13
相关论文
共 50 条
  • [31] Functional safety and security assessment of the control and protection systems
    Kosmowski, K. T.
    Sliwinski, M.
    Barnert, T.
    SAFETY AND RELIABILITY FOR MANAGING RISK, VOLS 1-3, 2006, : 2633 - +
  • [32] ON MERGING SYSTEM SAFETY AND QUANTITATIVE RISK ASSESSMENT
    DOUGHERTY, EM
    RELIABILITY ENGINEERING & SYSTEM SAFETY, 1994, 46 (03) : 203 - 207
  • [33] Vehicle Control System - quantitative Safety Assessment
    Prostrednik, D.
    ELEKTROTECHNIK UND INFORMATIONSTECHNIK, 2008, 125 (1-2): : A29 - A29
  • [34] A Comparative Safety Assessment Approach for Safety Critical Systems
    Guo, Jingjing
    2018 ANNUAL RELIABILITY AND MAINTAINABILITY SYMPOSIUM (RAMS), 2018,
  • [35] A Method of Entropy Weight Quantitative Risk Assessment for the Safety and Security Integration of a Typical Industrial Control System
    Mi, Junpeng
    Huang, Wenjun
    Chen, Mengchi
    Zhang, Wei
    IEEE ACCESS, 2021, 9 : 90919 - 90932
  • [36] System-theoretic approach to safety of robot control architectures
    Barchanski, Jerzy A.
    2006 Canadian Conference on Electrical and Computer Engineering, Vols 1-5, 2006, : 469 - 472
  • [37] Methodology of quantitative risk assessment for information system security
    Lin, MQ
    Wang, QM
    Li, JH
    COMPUTATIONAL INTELLIGENCE AND SECURITY, PT 2, PROCEEDINGS, 2005, 3802 : 526 - 531
  • [38] Research on a quantitative security risk assessment approach in large-scale early warning system
    Xuan, L
    Xu, X
    GRID AND COOPERATIVE COMPUTING GCC 2004 WORKSHOPS, PROCEEDINGS, 2004, 3252 : 490 - 497
  • [39] Design of Networked Embedded Systems: An Approach for Safety and Security
    Sveda, Miroslav
    Trchalik, Roman
    Ocenasek, Pavel
    IFAC WORKSHOP ON PROGRAMMABLE DEVICES AND EMBEDDED SYSTEMS (PDES 2009), PROCEEDINGS, 2009, : 127 - 132
  • [40] A Quantitative Safety Assessment Methodology for Safety-Critical Programmable Electronic Systems Using Fault Injection
    Reynolds, Michael A.
    Elks, Carl R.
    George, Nishant
    Sekhar, Meenakshi
    DeLong, Todd
    Johnson, Barry W.
    SAE INTERNATIONAL JOURNAL OF PASSENGER CARS-ELECTRONIC AND ELECTRICAL SYSTEMS, 2009, 2 (01): : 287 - 300