Guidelines for Cyber Risk Management in Autonomous Shipping

被引:1
作者
Li, Meixuan [1 ]
Yousaf, Awais [1 ]
Goh, Mark [1 ]
Zhou, Jianying [1 ]
Chattopadhyay, Sudipta [1 ]
机构
[1] Singapore Univ Technol & Design, iTrust, Singapore, Singapore
来源
APPLIED CRYPTOGRAPHY AND NETWORK SECURITY WORKSHOPS, PT II, ACNS 2024-AIBLOCK 2024, AIHWS 2024, AIOTS 2024, SCI 2024, AAC 2024, SIMLA 2024, LLE 2024, AND CIMSS 2024 | 2024年 / 14587卷
基金
新加坡国家研究基金会;
关键词
Autonomous ship; Ship systems; Maritime operations; Cyber risk; Cybersecurity; Risk analysis;
D O I
10.1007/978-3-031-61489-7_9
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The emergence of autonomous ships represents a significant advancement in maritime technology, promising enhanced efficiency, reduced operating costs and reducing or even completely removing crews from hazardous environments. However, the progress is accompanied by a burgeoning concern on the cyber security of these autonomous ships due to their exposure to the "connected world". The four key systems investigated in this study are: 1) Shore Control Centre (SCC); 2) Communication System; 3) Autonomous Ship Controller (ASC), and 4) Autonomous Navigation System (ANS). The paper highlights specific operational technology (OT) risks associated with MASS (Maritime Autonomous Surface Ship). For completeness, the study also drills down to cyber risks and impacts associated with sub-systems of these major OT systems. A comprehensive cyber risk assessment methodology employing the MITRE framework is provided to evaluate the severity of risks. Recommended mitigations include defence-in-depth cybersecurity protections for all systems, security-by-design approaches, personnel training and redundancy in certain critical systems (The full version of guidelines is accessible through this link for further reference). Taking into account all aspects, this paper functions as a case study examining cyber risks of the OT system of autonomous ships.
引用
收藏
页码:143 / 161
页数:19
相关论文
共 50 条
  • [21] Study of cyber threat intelligence, risk management and methods
    Singh, Pardeep
    Kumar, Mahesh
    Sharma, Neetu
    Kumar, Pramod
    Shweta
    [J]. JOURNAL OF INFORMATION & OPTIMIZATION SCIENCES, 2025, 46 (01) : 65 - 74
  • [22] Interplay between cyber supply chain risk management practices and cyber security performance
    Gani, Anisha Banu Dawood
    Fernando, Yudi
    Lan, Shulin
    Lim, Ming K.
    Tseng, Ming-Lang
    [J]. INDUSTRIAL MANAGEMENT & DATA SYSTEMS, 2023, 123 (03) : 843 - 861
  • [23] Cyber risk management strategies and integration: toward supply chain cyber resilience and robustness
    Jazairy, Amer
    Brho, Mazen
    Manuj, Ila
    Goldsby, Thomas J.
    [J]. INTERNATIONAL JOURNAL OF PHYSICAL DISTRIBUTION & LOGISTICS MANAGEMENT, 2024, 54 (11) : 1 - 29
  • [24] Autonomous ships for container shipping in the Arctic routes
    Ziaul Haque Munim
    Rana Saha
    Halvor Schøyen
    Adolf K. Y. Ng
    Theo E. Notteboom
    [J]. Journal of Marine Science and Technology, 2022, 27 : 320 - 334
  • [25] UE GUIDELINES: RISK ASSESSMENT AND RISK MANAGEMENT FOR RAILWAY TRANSPORT
    Ravera, Giovanni Battista
    Muschietti, Daniele
    Ravera, Matteo
    [J]. PROCEEDINGS OF THE THIRD INTERNATIONAL CONFERENCE ON TRAFFIC AND TRANSPORT ENGINEERING (ICTTE), 2016, : 1055 - 1064
  • [26] Autonomous ships for container shipping in the Arctic routes
    Munim, Ziaul Haque
    Saha, Rana
    Schoyen, Halvor
    Ng, Adolf K. Y.
    Notteboom, Theo E.
    [J]. JOURNAL OF MARINE SCIENCE AND TECHNOLOGY, 2022, 27 (01) : 320 - 334
  • [27] Cyber-Physical Risk Management for PV Photovoltaic Plants
    Miranda, Alexander W.
    Goldsmith, Steven
    [J]. 2017 INTERNATIONAL CARNAHAN CONFERENCE ON SECURITY TECHNOLOGY (ICCST), 2017,
  • [28] Dynamic risk management response system to handle cyber threats
    Gonzalez-Granadillo, G.
    Dubus, S.
    Motzek, A.
    Garcia-Alfaro, J.
    Alvarez, E.
    Merialdo, M.
    Papillon, S.
    Debar, H.
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 83 : 535 - 552
  • [29] A Web Platform for Integrated Vulnerability Assessment and Cyber Risk Management
    Russo, Pietro
    Caponi, Alberto
    Leuti, Marco
    Bianchi, Giuseppe
    [J]. INFORMATION, 2019, 10 (07)
  • [30] Cyber Security Risk Management in the SCADA Critical Infrastructure Environment
    Henrie, Morgan
    [J]. ENGINEERING MANAGEMENT JOURNAL, 2013, 25 (02) : 38 - 45