Gao, YuanFischer, RobertSeibt, SimonParekh, MithilLi, JianghaiEibl, MaximilianGaedke, Martin2017-08-282017-08-282017978-3-88579-669-5The increasing cyber threats require quick action from security experts to protect their industrial automation control system (IACS). For fulfilling the requirement, we propose to divided the classic cyber security analysis scope into three separated, yet interconnected domains: Threat, System and Security. Thus different groups of security professionals can work independently, and are not required to have the knowledge about the full scope. In addition, we proposed an asset-centric system architecture model to enable the modeling and simulation of attacks according to publicly known threats and vulnerabilities. Analysis based on the generated attack/defense trees can assist to manage and continuously monitor the deployed security controls. The proposed approach with tool supports reduces the workload of security experts as well as the incidents response team (IRT) towards an adaptive defense manner.enthreat modelasset managementattack/defense treeadaptive defenseIntegrated Security Framework10.18420/in2017_99Towards a Holistic Approach for Analysis, Simulation and Management of System Security Features1617-5468