Cyber Security Risk Assessment Method for SCADA of Industrial Control Systems

Alexey Poletykin
DOI: https://doi.org/10.1109/rusautocon.2018.8501811
2018-09-01
Abstract:The cyber security formula-based risk evaluation method is outlined for using SCADA in Industrial Control System (ICS) of Critical National Infrastructure (CNI) plants. The main feature of the method is taking into account not only information security methods but all safety and security and reliability measures available. Another feature concerns assets definition by means of explicit and hidden functions for which damage values from feasible cyber-attacks are estimated. The method deals with the scales of order. An example of the scale is proposed for damage and risk values. The essence of the method, its application domain restrictions, the stages of risk management addressed, key risk management concepts covered are described in the paper.
What problem does this paper attempt to address?