A Novel System-Theoretic Matrix-Based Approach to Analysing Safety and Security of Cyber-Physical Systems
نویسندگان
چکیده
Cyber-Physical Systems (CPSs) are getting increasingly complex and interconnected. Consequently, their inherent safety risks security so intertwined that the conventional analysis approaches which address them separately may be rendered inadequate. STPA (Systems-Theoretic Process Analysis) is a top-down hazard technique has been incorporated into several recently proposed integrated Safety Security (S&S) methods. This paper presents novel methodology leverages not only STPA, but also custom matrices to ensure more comprehensive S&S analysis. The demonstrated using case study of particular commercial cloud-based monitoring control system for residential energy storage systems.
منابع مشابه
Aligning Cyber-Physical System Safety and Security
Safety and security are two key properties of Cyber-Physical Systems (CPS). Safety is aimed at protecting the systems from accidental failures in order to avoid hazards, while security is focused on protecting the systems from intentional attacks. They share identical goals – protecting CPS from failing. When aligned within a CPS, safety and security work well together in providing a solid foun...
متن کاملSecure Control Systems: A Control-Theoretic Approach to Cyber-Physical Security
Secure Control Systems: A Control-Theoretic Approach to Cyber-Physical Security
متن کاملCyber Safety: A Systems Theory Approach to Managing Cyber Security Risks – Applied to TJX Cyber Attack
To manage security risks more effectively in today’s complex and dynamic cyber environment, a new way of thinking is needed to complement traditional approaches. In this paper we propose a new approach for managing cyber security risks, based on a model for accident analysis used in the Systems Safety field, called System-Theoretic Accident Model and Processes (STAMP). We have adapted and appli...
متن کاملCyber Safety: A Systems Thinking and Systems Theory Approach to Managing Cyber Security Risks
If we are to manage security risks more effectively in today’s complex and dynamic cyber environment, then a new way of thinking is needed to complement traditional approaches. According to Symantec’s 2014 Internet Security Threat Report, in 2012 more than ten million identities that included real names, dates of birth, and social security were exposed by a single breach. In 2013 there were eig...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: Telecom
سال: 2021
ISSN: ['2673-4001']
DOI: https://doi.org/10.3390/telecom2040030