Integrated Security Framework
Author:
Abstract
The increasing cyber threats require quick action from security experts to protect their industrial automation control system (IACS). For fulfilling the requirement, we propose to divided the classic cyber security analysis scope into three separated, yet interconnected domains: Threat, System and Security. Thus different groups of security professionals can work independently, and are not required to have the knowledge about the full scope. In addition, we proposed an asset-centric system architecture model to enable the modeling and simulation of attacks according to publicly known threats and vulnerabilities. Analysis based on the generated attack/defense trees can assist to manage and continuously monitor the deployed security controls. The proposed approach with tool supports reduces the workload of security experts as well as the incidents response team (IRT) towards an adaptive defense manner.
- Citation
- BibTeX
Gao, Y., Fischer, R., Seibt, S., Parekh, M. & Li, J.,
(2017).
Integrated Security Framework.
In:
Eibl, M. & Gaedke, M.
(Hrsg.),
INFORMATIK 2017.
Gesellschaft für Informatik, Bonn.
(S. 961-972).
DOI: 10.18420/in2017_99
@inproceedings{mci/Gao2017,
author = {Gao, Yuan AND Fischer, Robert AND Seibt, Simon AND Parekh, Mithil AND Li, Jianghai},
title = {Integrated Security Framework},
booktitle = {INFORMATIK 2017},
year = {2017},
editor = {Eibl, Maximilian AND Gaedke, Martin} ,
pages = { 961-972 } ,
doi = { 10.18420/in2017_99 },
publisher = {Gesellschaft für Informatik, Bonn},
address = {}
}
author = {Gao, Yuan AND Fischer, Robert AND Seibt, Simon AND Parekh, Mithil AND Li, Jianghai},
title = {Integrated Security Framework},
booktitle = {INFORMATIK 2017},
year = {2017},
editor = {Eibl, Maximilian AND Gaedke, Martin} ,
pages = { 961-972 } ,
doi = { 10.18420/in2017_99 },
publisher = {Gesellschaft für Informatik, Bonn},
address = {}
}
Sollte hier kein Volltext (PDF) verlinkt sein, dann kann es sein, dass dieser aus verschiedenen Gruenden (z.B. Lizenzen oder Copyright) nur in einer anderen Digital Library verfuegbar ist. Versuchen Sie in diesem Fall einen Zugriff ueber die verlinkte DOI: 10.18420/in2017_99
Haben Sie fehlerhafte Angaben entdeckt? Sagen Sie uns Bescheid: Send Feedback
More Info
DOI: 10.18420/in2017_99
ISBN: 978-3-88579-669-5
ISSN: 1617-5468
xmlui.MetaDataDisplay.field.date: 2017
Language:
(en)

Collections
- P275 - INFORMATIK 2017 [266]