Risk assessment methods for converged IoT and SCADA systems: review and recommendations

Risk assessment methods for converged IoT and SCADA systems: review and recommendations
复制标题

融合物联网和 SCADA 系统的风险评估方法:审查和建议

DOI:
10.1049/cp.2019.0130
复制
发表时间:
2019
期刊:
--
影响因子:
--
通讯作者:
Aldmour R
Aldmour R
中科院分区:
--
文献类型:
--
作者:
Aldmour R

文献摘要

相似文献

风险评估用于识别、估计可能影响组织的风险并对其进行优先排序。现有的风险评估方法并不特别适用于包括物联网(IoT)等动态系统。最近,物联网已被用于开发监控和数据采集(SCADA)系统的自然扩展,该系统支持交通、能源和制造业等各个部门的工业控制。然而,在没有适当关注新风险的情况下整合物联网系统可能会引发攻击,增加网络安全问题,并影响运营和安全。在本文中,确定了融合物联网和SCADA系统背景下风险评估方法的特殊考虑因素,并提出了将特殊考虑因素与管理风险的标准方法一起纳入的建议。
Risk assessment is used to identify, estimate and prioritise risks that could impact organisations. Existing risk assessment methods are not particularly adapted to include dynamic systems such as the Internet of Things (IoT). Recently, IoT has been used to develop a natural extension of Supervisory Control and Data Acquisition (SCADA) systems that support industrial control in various sectors such as transportation, energy, and manufacturing. However, incorporating IoT systems without due attention to new risks posed could enable attacks, increase the cybersecurity concerns, and impact operations and safety. In this paper, special considerations for risk assessment methods in the context of converged IoT and SCADA systems are identified, and we present recommendations for the inclusion of the special considerations alongside standard methods for managing risks.