Cyber Threat Intelligence for Improving Cybersecurity and Risk Management in Critical Infrastructure

被引:0
|
作者
Kure, Halima Ibrahim [1 ]
Islam, Shareeful [1 ]
机构
[1] Univ East London, Sch Architecture Comp & Engn, London, England
关键词
Cybersecurity; Cyber Threat Intelligence; Cyber Security Risk Management; Critical Infrastructure; Security Control; SECURITY;
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Cyber-attack is one of the significant threats affecting to any organisation specifically to the Critical Infrastructure (CI) organisation. These attacks are nowadays more sophisticated, multi-vectored and less predictable, which make the Cyber Security Risk Management (CSRM) task more challenging. Critical Infrastructure needs a new line of security defence to control these threats and minimise risks. Cyber Threat Intelligence (CTI) provides evidence-based information about the threats aiming to prevent threats. There are existing works and industry practice that emphasise the necessity of CTI and provides methods for threat intelligence and sharing. However, despite these significant efforts, there is a lack of focus on how CTI information can support the CSRM activities so that the organisation can undertake appropriate controls to mitigate the risk proactively. This paper aims to fill this gap by integrating CTI for improving cybersecurity risks management practice specifically focusing on the critical infrastructure. In particular, the proposed approach contributes beyond state of the art practice by incorporating CTI information for the risk management activities. This helps the organisation to provide adequate and appropriate controls from strategic, tactical and operational perspectives. We have integrated concepts relating to CTI and CSRM so that threat actor's profile, attack detailed can support calculating the risk. We consider smart grid system as a Critical Infrastructure to demonstrate the applicability of the work. The result shows that cyber risks in critical infrastructures can be minimised if CTI information is gathered and used as part of CSRM activities. CTI not only supports understanding of threat for accurate risk estimation but also evaluates the effectiveness of existing controls and recommend necessity controls to improve overall cybersecurity. Also, the result shows that our approach provides early warning about issues that need immediate attention.
引用
收藏
页码:1478 / 1502
页数:25
相关论文
共 50 条
  • [21] Cybersecurity threat intelligence knowledge exchange based on blockchainProposal of a new incentive model based on blockchain and Smart contracts to foster the cyber threat and risk intelligence exchange of information
    R. Riesco
    X. Larriva-Novo
    V. A. Villagra
    Telecommunication Systems, 2020, 73 : 259 - 288
  • [22] Artificial Intelligence Improving Safety and Risk Analysis: A Comparative Analysis for Critical Infrastructure
    Guzman, A.
    Ishida, S.
    Choi, E.
    Aoyama, A.
    2016 IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL ENGINEERING AND ENGINEERING MANAGEMENT (IEEM), 2016, : 471 - 475
  • [23] Transforming Cybersecurity into Critical Energy Infrastructure: A Study on the Effectiveness of Artificial Intelligence
    Govea, Jaime
    Gaibor-Naranjo, Walter
    Villegas-Ch, William
    SYSTEMS, 2024, 12 (05):
  • [24] Cyber-Threats to Critical National Infrastructure: An Intelligence Challenge
    Rudner, Martin
    INTERNATIONAL JOURNAL OF INTELLIGENCE AND COUNTERINTELLIGENCE, 2013, 26 (03) : 453 - 481
  • [25] Improving Threat Mitigation Through a Cybersecurity Risk Management Framework: A Computational Design Science Approach
    Ampel, Benjamin M.
    Samtani, Sagar
    Zhu, Hongyi
    Chen, Hsinchun
    Nunamaker, Jay F.
    JOURNAL OF MANAGEMENT INFORMATION SYSTEMS, 2024, 41 (01) : 236 - 265
  • [26] Ontology-based Cyber Risk Monitoring Using Cyber Threat Intelligence
    Merah, Yazid
    Kenaza, Tayeb
    ARES 2021: 16TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, 2021,
  • [27] Enabling Efficient Cyber Threat Hunting With Cyber Threat Intelligence
    Gao, Peng
    Shao, Fei
    Liu, Xiaoyuan
    Xiao, Xusheng
    Qin, Zheng
    Xu, Fengyuan
    Mittal, Prateek
    Kulkarni, Sanjeev R.
    Song, Dawn
    2021 IEEE 37TH INTERNATIONAL CONFERENCE ON DATA ENGINEERING (ICDE 2021), 2021, : 193 - 204
  • [28] Cybersecurity threat intelligence knowledge exchange based on blockchain Proposal of a new incentive model based on blockchain and Smart contracts to foster the cyber threat and risk intelligence exchange of information
    Riesco, R.
    Larriva-Novo, X.
    Villagra, V. A.
    TELECOMMUNICATION SYSTEMS, 2020, 73 (02) : 259 - 288
  • [30] The third international workshop on cyber threat intelligence management (CyberTIM)
    Vasilomanolakis, Emmanouil
    Happa, Jassim
    Habib, Sheikh Mahbub
    1600, Association for Computing Machinery