Quantitative Assessment of Safety and Security of System Architectures for Cyberphysical Systems Using the NFR Approach

被引:25
|
作者
Subramanian, Nary [1 ]
Zalewski, Janusz [2 ]
机构
[1] Univ Texas Tyler, Coll Engn & Comp Sci, Dept Comp Sci, Tyler, TX 75799 USA
[2] Florida Gulf Coast Univ, UA Whitaker Coll Engn, Dept Bioengn & Software Engn, Ft Myers, FL 33965 USA
来源
IEEE SYSTEMS JOURNAL | 2016年 / 10卷 / 02期
关键词
Cyberphysical systems (CPSs); nonfunctional requirement (NFR) approach; safety; security; system architecture assessment;
D O I
10.1109/JSYST.2013.2294628
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyberphysical systems (CPSs) are an integral part of modern societies since most critical infrastructures are controlled by these systems. CPSs incorporate computer-based and network-based technologies for the monitoring and control of physical processes. Two critically important properties of CPSs are safety and security. It is widely accepted that properties such as safety and security should be considered at the system design phase itself, particularly at the architectural level wherein such properties are embedded in the final system. However, safety and security are interrelated, and there seems to be a lack of techniques that consider both of them together. The nonfunctional requirement (NFR) approach is a technique that allows the simultaneous evaluation of both safety and security at the architectural level. In this paper, we apply the NFR approach to quantitatively evaluate the safety and security properties of an example CPS, i.e., an oil pipeline control system. We conclude that the NFR approach provides practical results that can be used by designers and developers to create safe and secure CPSs.
引用
收藏
页码:397 / 409
页数:13
相关论文
共 50 条
  • [41] Towards a unified approach to safety and security in automotive systems
    Jesty, Peter H.
    Ward, David D.
    SAFETY OF SYSTEMS, 2007, : 21 - 34
  • [42] Quantitative risk assessment - An alternative approach to laser safety?
    Gardner, B
    Smith, PA
    IRPA9 - 1996 INTERNATIONAL CONGRESS ON RADIATION PROTECTION / NINTH INTERNATIONAL CONGRESS OF THE INTERNATIONAL RADIATION PROTECTION ASSOCIATION, PROCEEDINGS, VOL 3, 1996, : C669 - C671
  • [43] A consequence based approach to the quantitative assessment of inherent safety
    Tugnoli, Alessandro
    Cozzani, Valerio
    Landucci, Gabriele
    AICHE JOURNAL, 2007, 53 (12) : 3171 - 3182
  • [44] Security Risk Assessment of Server Hardware Architectures using Graph Analysis
    Koteshwara, Sandhya
    PROCEEDINGS OF THE 2021 ASIAN HARDWARE ORIENTED SECURITY AND TRUST SYMPOSIUM (ASIANHOST), 2021,
  • [45] An Evolutionary Approach for the Hierarchical Scheduling of Safety- and Security-Critical Multicore Architectures
    Woolley, Brandon
    Mengel, Susan
    Ertas, Atila
    COMPUTERS, 2020, 9 (03) : 1 - 19
  • [46] A quantitative assessment of security risks based on a multifaceted classification approach
    Jouini, Mouna
    Rabai, Latifa Ben Arfa
    Khedri, Ridha
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2021, 20 (04) : 493 - 510
  • [47] A quantitative assessment of security risks based on a multifaceted classification approach
    Mouna Jouini
    Latifa Ben Arfa Rabai
    Ridha Khedri
    International Journal of Information Security, 2021, 20 : 493 - 510
  • [48] A Probabilistic Approach for Power System Security Assessment
    Dinh Hieu Nguyen
    Negnevitsky, Michael
    2012 22ND AUSTRALASIAN UNIVERSITIES POWER ENGINEERING CONFERENCE (AUPEC): GREEN SMART GRID SYSTEMS, 2012,
  • [49] Integrated quantitative assessment of mainstream operating systems' security vulnerabilities
    Research Center of Information Intelligent and Information Security, Institute of Computing Technology, Chinese Academy of Sciences, Beijing 100080, China
    不详
    Gaojishu Tongxin, 2007, 4 (331-336):
  • [50] Survivality modeling for quantitative security assessment in ubiquitous computing systems
    Choi, C
    Kim, S
    Cho, WD
    COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2004, PT 1, 2004, 3043 : 207 - 214