A new safety and security risk analysis framework for industrial control systems

被引:12
|
作者
Kriaa, Siwar [1 ,2 ]
Bouissou, Marc [1 ]
Laarouchi, Youssef [1 ]
机构
[1] EDF, 7 Blvd Gaspard Monge, F-91120 Palaiseau, France
[2] CentraleSupelec, Chatenay Malabry, France
关键词
Industrial control system; safety; security; modeling; risk assessment; cyber-physical system; COMPROMISE; MODEL;
D O I
10.1177/1748006X18765885
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
The migration of modern industrial control systems toward information and communication technologies exposes them to cyber-attacks that can alter the way they function, thereby causing adverse consequences on the system and its environment. It has consequently become crucial to consider security risks in traditional safety risk analyses for industrial systems controlled by modern industrial control system. We propose in this article a new framework for safety and security joint risk analysis for industrial control systems. S-cube (for supervisory control and data acquisition safety and security joint modeling) is a new model-based approach that enables, thanks to a knowledge base, formal modeling of the physical and functional architecture of cyber-physical systems and automatic generation of a qualitative and quantitative analysis encompassing safety risks (accidental) and security risks (malicious). We first give the principle and rationale of S-cube and then we illustrate its inputs and outputs on a case study.
引用
收藏
页码:151 / 174
页数:24
相关论文
共 50 条
  • [41] A Study on Quantitative Risk Assessment Methods in Security Design for Industrial Control Systems
    Kawanishi, Yasuyuki
    Nishihara, Hideaki
    Souma, Daisuke
    Yoshida, Hirotaka
    Hata, Yoichi
    2018 16TH IEEE INT CONF ON DEPENDABLE, AUTONOM AND SECURE COMP, 16TH IEEE INT CONF ON PERVAS INTELLIGENCE AND COMP, 4TH IEEE INT CONF ON BIG DATA INTELLIGENCE AND COMP, 3RD IEEE CYBER SCI AND TECHNOL CONGRESS (DASC/PICOM/DATACOM/CYBERSCITECH), 2018, : 62 - 69
  • [42] Vulnerability Analysis and Enhancement of Security of Communication Protocol in Industrial Control Systems
    Rajesh, L.
    Satyanarayana, Penke
    HELIX, 2019, 9 (04): : 5122 - 5127
  • [43] Safety Workplace: The Prevention of Industrial Security Risk Factors
    Erazo-Chamorro, Vanessa C.
    Arciniega-Rocha, Ricardo P.
    Rudolf, Nagy
    Tibor, Babos
    Gyula, Szabo
    APPLIED SCIENCES-BASEL, 2022, 12 (21):
  • [44] The Application of Security Adaptive Framework for Sensor in Industrial Systems
    Mozzaquatro, Bruno A.
    Jardim-Goncalves, Ricardo
    Melo, Raquel
    Agostinho, Carlos
    2016 IEEE SENSORS APPLICATIONS SYMPOSIUM (SAS 2016) PROCEEDINGS, 2016, : 160 - 165
  • [45] Are safety and security in industrial systems antagonistic or complementary issues?
    Deleuze, Gilles
    Chatelet, Eric
    Laclemence, Patrick
    Piwowar, Julien
    Affeltranger, Bastien
    SAFETY, RELIABILITY AND RISK ANALYSIS: THEORY, METHODS AND APPLICATIONS, VOLS 1-4, 2009, : 3093 - +
  • [46] Security - A new framework for analysis
    Hampson, FO
    INTERNATIONAL JOURNAL, 1998, 53 (04): : 798 - 799
  • [47] Cyber Security Provision for Industrial Control Systems
    Amanowicz, Marek
    Jarmakiewicz, Jacek
    TRENDS IN ADVANCED INTELLIGENT CONTROL, OPTIMIZATION AND AUTOMATION, 2017, 577 : 611 - 620
  • [48] Industrial Control Systems Security: What is happening?
    Krotofil, Marina
    Gollmann, Dieter
    2013 11TH IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), 2013, : 664 - 669
  • [49] Industrial Control Systems Security: What is happening?
    Krotofil, Maryna
    Gollmann, Dieter
    2013 11TH IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), 2013, : 670 - 675
  • [50] The drift of industrial control systems to pseudo security
    Donnelly, Peter
    Abuhmida, Mabrouka
    Tubb, Christopher
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2022, 38