Towards an Automated and Dynamic Risk Management Response System

被引:6
|
作者
Gonzalez-Granadillo, Gustavo [1 ]
Alvarez, Ender [1 ]
Motzek, Alexander [2 ]
Merialdo, Matteo [3 ]
Garcia-Alfaro, Joaquin [1 ]
Debar, Herve [1 ]
机构
[1] Telecom SudParis, Inst Mines Telecom, SAMOVAR, CNRS UMR 5157, 9 Rue Charles Fourier, F-91011 Evry, France
[2] Univ Lubeck, Inst Informat Syst, Ratzeburger Allee 160, D-23562 Lubeck, Germany
[3] RHEA Grp, Ave Pasteur 23, B-1300 Wavre, Belgium
来源
基金
欧盟第七框架计划;
关键词
Dynamic response system; RORI; Operational impact; Automatic response; Critical infrastructures;
D O I
10.1007/978-3-319-47560-8_3
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Achieving a fully automated and dynamic system in critical infrastructure scenarios is an open issue in ongoing research. Generally, decisions in SCADA systems require a manual intervention, that in most of the cases is performed by highly experienced operators. In this paper we propose a framework consisting of a proactive management software that aims at anticipating the occurrence of potential attacks. It conducts an initial evaluation of reported proactive evidences based on a quantitative metric of monetary return on response investment. The framework evaluates and selects mitigation actions from a pool of candidates, by ranking them in terms of financial and operational impacts. The purpose of this process is to select an optimal set of mitigation actions from financial and operational perspectives and propose them to reduce the risk of threats against the monitored system, without sacrificing an organization's missions in favor of security. A real world case study of a SCADA environment shows the applicability of the model, from the analysis of the input data to the selection of the response plan.
引用
收藏
页码:37 / 53
页数:17
相关论文
共 50 条
  • [21] An Efficient Home Energy Management System for Automated Residential Demand Response
    Khomami, Hadis Pourasghar
    Javidi, Mohammad Hossein
    2013 13TH INTERNATIONAL CONFERENCE ON ENVIRONMENT AND ELECTRICAL ENGINEERING (EEEIC), 2013, : 307 - 312
  • [22] Towards an automated approach to dynamic interpretation of simulations
    Kennedy, Catriona
    Theodoropoulos, Georgios
    Ferrari, Edward
    Lee, Peter
    Skelcher, Chris
    AMS 2007: FIRST ASIA INTERNATIONAL CONFERENCE ON MODELLING & SIMULATION ASIA MODELLING SYMPOSIUM, PROCEEDINGS, 2007, : 589 - +
  • [23] Automated Risk and Utility Management
    Ekelhart, Andreas
    Neubauer, Thomas
    Fenz, Stefan
    PROCEEDINGS OF THE 2009 SIXTH INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY: NEW GENERATIONS, VOLS 1-3, 2009, : 393 - +
  • [24] Architecture and Implementation Issues, Towards a Dynamic Waste Collection Management System
    Asimakopoulos, George
    Christodoulou, Sotiris
    Gizas, Andreas
    Triantafillou, Vassilios
    Tzimas, Giannis
    Gialelis, John
    Voyiatzis, Artemios G.
    Karadimas, Dimitris
    Papalambrou, Andreas
    WWW'15 COMPANION: PROCEEDINGS OF THE 24TH INTERNATIONAL CONFERENCE ON WORLD WIDE WEB, 2015, : 1383 - 1388
  • [25] Study of Dynamic Traffic Management Based on Automated Driving/ADAS with Connected System
    Irie Y.
    Sano M.
    Matsunaga H.
    Akasaka D.
    Miura M.
    International Journal of Automotive Engineering, 2024, 15 (02) : 82 - 89
  • [26] TOWARDS AN AUTOMATED TOTAL INFORMATION SYSTEM
    ADKINS, SR
    PIERCE, JF
    OPERATIONS RESEARCH, 1965, S 13 : B138 - &
  • [27] Design of Integrated Risk Management-Based Dynamic Driving Control of Automated Vehicles
    Kim, Kyuwon
    Lee, Kyoungjun
    Ko, Bongchul
    Kim, Beomjun
    Yi, Kyongsu
    IEEE INTELLIGENT TRANSPORTATION SYSTEMS MAGAZINE, 2017, 9 (01) : 57 - 73
  • [28] Dynamic project management and its application on emergency response system
    Zhou Xianzhong
    Sheng Zhaohan
    Zhao Jiabao
    Ling Haifeng
    Hou Yunzhang
    2007 IEEE INTERNATIONAL CONFERENCE ON NETWORKING, SENSING, AND CONTROL, VOLS 1 AND 2, 2007, : 205 - +
  • [29] Integrated risk assessment in process plants with dynamic management system
    Aneziris, ON
    Papazoglou, IA
    Hale, A
    Bellamy, L
    Post, J
    PSAM 5: PROBABILISTIC SAFETY ASSESSMENT AND MANAGEMENT, VOLS 1-4, 2000, (34): : 1275 - 1282
  • [30] Towards a Model of Integration between Risk Management and Lesson Learning System for Project Management
    Manotas-Nino, Vanessa
    Clermont, Philippe
    Geneste, Laurent
    Ximena Halabi, Ana
    2015 INTERNATIONAL CONFERENCE ON INDUSTRIAL ENGINEERING AND SYSTEMS MANAGEMENT (IESM), 2015, : 1179 - 1185