Architectural Model for Information Security Analysis of Critical Information Infrastructures
نویسندگان
چکیده
Critical Information Infrastructures (CII) are computer systems and networks that support and control operations of many critical infrastructures that our society depends on, such as power plants, electrical grids, and water and waste facilities. Since the operations of CII also effect physical world, they are a good example of large-scale, critical cyber-physical systems. In recent years, CII become an attractive target for cyber attacks and the potential impact of a successful attack could lead to disastrous consequences in the physical world. Thus ensuring the security of CII is of vital importance. A fundamental prerequisite to secure a CII system is a clear understanding and a consistent view of its architecture. However, because of the complexity and scale, this is challenging to acquire. In this paper, we propose a layered architectural view for CII, which aims at building a common ground among stakeholders and supporting the implementation of information security management processes. In order to manage the complexity and scale, we define four interrelated architectural layers, and use the concept of viewpoints to focus on a subset of the system. We indicate the applicability of our approach in the context of CII security analysis.
منابع مشابه
A Model based on Cloud Computing for the implementation and management IT services in Banks
In recent years, the banking industry has made significant changes in technology and communications. The expansion of electronic communications and a large number of people around the world access to the Internet, appropriate to establish trade and economic exchanges provided but high costs, lack of flexibility and agility in existing systems because of the large volume of information, confiden...
متن کاملA Model based on Cloud Computing for the implementation and management IT services in Banks
In recent years, the banking industry has made significant changes in technology and communications. The expansion of electronic communications and a large number of people around the world access to the Internet, appropriate to establish trade and economic exchanges provided but high costs, lack of flexibility and agility in existing systems because of the large volume of information, confiden...
متن کاملA Web-Based Survivability Control Architecture
1 INTRODUCTION We have begun to investigate a new architectural model for survivability monitoring and control of complex distributed information systems, such as those that underpin critical civic and other infrastructures. The model is a synthesis of two streams of thought. The first was presented in " Information Survivability Control Systems [4]. " That work suggests an approach to dynamic ...
متن کاملA Study of the impact of Knowledge Management Infrastructures and Dimensions of Improvement of Managers' Decision-making on the Knowledge management status in the Iran Public Libraries Foundation
Purpose: To determine the impact of the knowledge management infrastructures and the dimensions of improvement of managers' decision-making on the status of knowledge management in the public libraries affiliated to the Iran Public Libraries Foundation. Method: This research is a descriptive-correlational study. The statistical sample of the research was selected by using the cluster random sa...
متن کاملExploring the Type of Relationship between Information Security Management and Organizational Culture (Case Study in TAM Iran Khodro Co.)
A culture conducive to information security practice is extremely important for organizations since information has to be critical assets in modern enterprises. Thus for understanding and improving the organizational behavior with regard to information security, enterprises may look into organizational culture and examine how it affects the effectiveness of implementing ISM. This study aims ...
متن کامل