Risk Assessment For Industrial Control Systems Quantifying Availability Using Mean Failure Cost (MFC)

Author:

Chen Qian1,Abercrombie Robert K.2,Sheldon Frederick T.3

Affiliation:

1. Engineering Technology, Savannah State University, Savannah, GA 31404 USA

2. Computational Science and Engineering, Oak Ridge National Laboratory, Oak Ridge, TN 37831 USA, Department of Computer Science, University of Memphis, Memphis, TN 38152 USA

3. Department of Computer Science, University of Memphis, Memphis, TN 38152 USA

Abstract

Abstract 1 Industrial Control Systems (ICS) are commonly used in industries such as oil and natural gas, transportation, electric, water and wastewater, chemical, pharmaceutical, pulp and paper, food and beverage, as well as discrete manufacturing (e.g., automotive, aerospace, and durable goods.) SCADA systems are generally used to control dispersed assets using centralized data acquisition and supervisory control. Originally, ICS implementations were susceptible primarily to local threats because most of their components were located in physically secure areas (i.e., ICS components were not connected to IT networks or systems). The trend toward integrating ICS systems with IT networks (e.g., efficiency and the Internet of Things) provides significantly less isolation for ICS from the outside world thus creating greater risk due to external threats. Albeit, the availability of ICS/SCADA systems is critical to assuring safety, security and profitability. Such systems form the backbone of our national cyber-physical infrastructure. Herein, we extend the concept of mean failure cost (MFC) to address quantifying availability to harmonize well with ICS security risk assessment. This new measure is based on the classic formulation of Availability combined with Mean Failure Cost (MFC). The metric offers a computational basis to estimate the availability of a system in terms of the loss that each stakeholder stands to sustain as a result of security violations or breakdowns (e.g., deliberate malicious failures).

Publisher

Walter de Gruyter GmbH

Subject

Artificial Intelligence,Computer Vision and Pattern Recognition,Hardware and Architecture,Modelling and Simulation,Information Systems

Cited by 14 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Security Challenges in Industry 4.0 PLC Systems;Applied Sciences;2021-10-20

2. Survey of cyber risk analysis techniques for use in the nuclear industry;Progress in Nuclear Energy;2021-10

3. ExSol;Digital Threats: Research and Practice;2021-07

4. Cybersecurity management for distributed control system: systematic approach;Journal of Ambient Intelligence and Humanized Computing;2021-01-03

5. Reliability Assessment Model for Industrial Control System Based on Belief Rule Base;International Journal of Computers Communications & Control;2019-05-31

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3