Advanced Approach to Information Security Management System Model for Industrial Control System

被引:2
|
作者
Park, Sanghyun [1 ]
Lee, Kyungho [1 ]
机构
[1] Korea Univ, CIST, Seoul 136713, South Korea
来源
关键词
D O I
10.1155/2014/348305
中图分类号
O [数理科学和化学]; P [天文学、地球科学]; Q [生物科学]; N [自然科学总论];
学科分类号
07 ; 0710 ; 09 ;
摘要
Organizations make use of important information in day-to-day business. Protecting sensitive information is imperative and must be managed. Companies in many parts of the world protect sensitive information using the international standard known as the information security management system (ISMS). ISO 27000 series is the international standard ISMS used to protect confidentiality, integrity, and availability of sensitive information. While an ISMS based on ISO 27000 series has no particular flaws for general information systems, it is unfit to manage sensitive information for industrial control systems (ICSs) because the first priority of industrial control is safety of the system. Therefore, a new information security management system based on confidentiality, integrity, and availability as well as safety is required for ICSs. This new ISMS must be mutually exclusive of an ICS. This paper provides a new paradigm of ISMS for ICSs, which will be shown to be more suitable than the existing ISMS.
引用
收藏
页数:13
相关论文
共 50 条
  • [1] Discussion on Information Security of Industrial Control System
    Zhang, Xiaofei
    Zheng, Luolin
    Zhao, Ruying
    [J]. PROCEEDINGS OF THE 2013 ASIA-PACIFIC COMPUTATIONAL INTELLIGENCE AND INFORMATION TECHNOLOGY CONFERENCE, 2013, : 517 - 523
  • [2] Advanced Information Security Management Evaluation System
    Jo, Heasuk
    Kim, Seungjoo
    Won, Dongho
    [J]. KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2011, 5 (06): : 1192 - 1213
  • [3] Information Security Management: A System Dynamics Approach
    Nazareth, Derek L.
    Choi, Jae
    [J]. AMCIS 2012 PROCEEDINGS, 2012,
  • [4] A system dynamics model for information security management
    Nazareth, Derek L.
    Choi, Jae
    [J]. INFORMATION & MANAGEMENT, 2015, 52 (01) : 123 - 134
  • [5] Advanced approach to information security management system utilizing maturity models in critical infrastructure
    You, Youngin
    Oh, Junhyoung
    Kim, Sooheon
    Lee, Kyungho
    [J]. KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2018, 12 (10): : 4995 - 5014
  • [6] Information demand of automated industrial control system security analysis
    Tebbe, Christopher
    Glawe, Matthias
    Niemann, Karl-Heinz
    Fay, Alexander
    [J]. AT-AUTOMATISIERUNGSTECHNIK, 2017, 65 (01) : 87 - 97
  • [7] Tobacco System Industrial Control System Security
    Jiang, Yixiang
    Wang, Liujing
    Zhang, Xun
    [J]. 2019 IEEE 4TH INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION SYSTEMS (ICCCS 2019), 2019, : 693 - 696
  • [8] Model Driven Approach for Designing of Information Security System
    Gaidarski, Ivan
    Minchev, Zlatogor
    Andreev, Rumen
    [J]. JOURNAL OF INFORMATION ASSURANCE AND SECURITY, 2018, 13 (04): : 149 - 158
  • [9] Research on Interconnection Security Protection System of Nuclear Reactor Industrial Control System and Enterprise Information System
    Qin, Lihua
    Wang, Dan
    Wang, Daqiu
    [J]. Hedongli Gongcheng/Nuclear Power Engineering, 2020, 41 (02): : 173 - 177
  • [10] Information Security Factors in the Implementation of Industrial Control System into Cloud Environment
    Ibrahim, Asma Zubaida M.
    Yahaya, Jamaiah H.
    [J]. ADVANCED SCIENCE LETTERS, 2018, 24 (07) : 5239 - 5242