A Systems Approach for Eliciting Mission-Centric Security Requirements

被引:0
|
作者
Carter, Bryan T. [1 ,2 ]
Bakirtzis, Georgios [1 ,2 ]
Elks, Carl R. [2 ]
Fleming, Cody H. [1 ]
机构
[1] UVA, Coordinated Syst Lab, Syst & Informat Engn, Charlottesville, VA USA
[2] VCU, Dependable CyberPhys Syst Lab, Elect & Comp Engn, Richmond, VA USA
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The security of cyber-physical systems is first and foremost a safety problem, yet it is typically handled as a traditional security problem, which means that solutions are based on defending against threats and are often implemented too late. This approach neglects to take into consideration the context in which the system is intended to operate, thus system safety may be compromised. This paper presents a systems-theoretic analysis approach that combines stakeholder perspectives with a modified version of Systems-Theoretic Accident Model and Process (STAMP) that allows decision-makers to strategically enhance the safety, resilience, and security of a cyber-physical system against potential threats. This methodology allows the capture of vital mission-specific information in a model, which then allows analysts to identify and mitigate vulnerabilities in the locations most critical to mission success. We present an overview of the general approach followed by a real example using an unmanned aerial vehicle conducting a reconnaissance mission.
引用
收藏
页码:626 / 633
页数:8
相关论文
共 50 条
  • [1] Decision Support for Mission-Centric Network Security Management
    Javornik, Michal
    Komarkova, Jana
    Sadlek, Lukas
    Husak, Martin
    NOMS 2020 - PROCEEDINGS OF THE 2020 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM 2020: MANAGEMENT IN THE AGE OF SOFTWARIZATION AND ARTIFICIAL INTELLIGENCE, 2020,
  • [2] Decision Support for Mission-Centric Cyber Defence
    Javornik, Michal
    Komarkova, Jana
    Husak, Martin
    14TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2019), 2019,
  • [3] Building Mission-Centric Cyber Risk Assessments
    Guion, Jeffrey
    Reith, Mark
    PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2018), 2018, : 252 - 261
  • [4] Mission-Centric Automated Cyber Red Teaming
    Randhawa, Suneel
    Turnbull, Benjamin
    Yuen, Joseph
    Dean, Jonathan
    13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018), 2019,
  • [5] Mission-Centric Content Sharing Across Heterogeneous Networks
    Strayer, Tim
    Ramanathan, Ram
    Coffin, Daniel
    Nelson, Samuel
    Atighetchi, Michael
    Adler, Aaron
    Blais, Stephane
    Thapa, Bishal
    Tetteh, Will
    Shurbanov, Vlad
    Haigh, Karen
    Hain, Regina
    Rock, Colleen
    Do, Emily
    Caro, Armando
    Ellard, Daniel
    Beckerle, Michael
    Lawrence, Stephen
    Loos, Scott
    2019 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS (ICNC), 2019, : 1034 - 1038
  • [6] Integrating Mission-Centric Impact Assessment to Operational Resiliency in Cyber-Physical Systems
    Haque, Md Ariful
    Shetty, Sachin
    Kamhoua, Charles A.
    Gold, Kimberly
    2020 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2020,
  • [7] Cyber Situational Awareness and Mission-Centric Resilient Cyber Defense
    Lei, Jingmin
    PROCEEDINGS OF 2015 4TH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND NETWORK TECHNOLOGY (ICCSNT 2015), 2015, : 1218 - 1225
  • [8] Cauldron Mission-Centric Cyber Situational Awareness with Defense in Depth
    Jajodia, Sushil
    Noel, Steven
    Kalapa, Pramod
    Albanese, Massimiliano
    Williams, John
    2011 - MILCOM 2011 MILITARY COMMUNICATIONS CONFERENCE, 2011, : 1339 - 1344
  • [9] Mission-Centric Risk Assessment to Improve Cyber Situational Awareness
    Silva, F. R. L.
    Jacob, P.
    13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018), 2019,
  • [10] Eliciting Security Requirements for Business Processes of Legacy Systems
    Argyropoulos, Nikolaos
    Marquez Alcaniz, Luis
    Mouratidis, Haralambos
    Fish, Andrew
    Rosado, David G.
    Garcia-Rodriguez de Guzman, Ignacio
    Fernandez-Medina, Eduardo
    PRACTICE OF ENTERPRISE MODELING, POEM 2015, 2015, 235 : 91 - 107