Mission-Based Analysis for Assessing Cyber Risk in Critical Infrastructure Systems

Abstract : Adversaries with the appropriate expertise and access can potentially exploit the large attack surface provided by the cyber component of critical infrastructure assets to target operations across the various sectors and significantly impact society. This paper describes a family of cyber risk methodologies known as “mission-based analysis” (MBA) that assist system designers in identifying the threats that pose the highest risk to mission execution and in prioritizing mitigation actions against the threats. This paper describes our experiences applying MBA and discusses its benefits and limitations. Also, it describes future enhancements of MBA and compares the approach with other assurance methodologies.
Type de document :
Communication dans un congrès
Jonathan Butts; Sujeet Shenoi. 7th International Conference on Critical Infrastructure Protection (ICCIP), Mar 2013, Washington, DC, United States. Springer, IFIP Advances in Information and Communication Technology, AICT-417, pp.201-214, 2013, Critical Infrastructure Protection VII. 〈10.1007/978-3-642-45330-4_14〉
Liste complète des métadonnées

Littérature citée [11 références]  Voir  Masquer  Télécharger

https://hal.inria.fr/hal-01456886
Contributeur : Hal Ifip <>
Soumis le : lundi 6 février 2017 - 09:45:29
Dernière modification le : lundi 6 février 2017 - 09:49:06
Document(s) archivé(s) le : dimanche 7 mai 2017 - 12:48:51

Fichier

978-3-642-45330-4_14_Chapter.p...
Fichiers produits par l'(les) auteur(s)

Licence


Distributed under a Creative Commons Paternité 4.0 International License

Identifiants

Citation

Thomas Llanso, Gregg Tally, Michael Silberglitt, Tara Anderson. Mission-Based Analysis for Assessing Cyber Risk in Critical Infrastructure Systems. Jonathan Butts; Sujeet Shenoi. 7th International Conference on Critical Infrastructure Protection (ICCIP), Mar 2013, Washington, DC, United States. Springer, IFIP Advances in Information and Communication Technology, AICT-417, pp.201-214, 2013, Critical Infrastructure Protection VII. 〈10.1007/978-3-642-45330-4_14〉. 〈hal-01456886〉

Partager

Métriques

Consultations de la notice

80

Téléchargements de fichiers

103