Security intelligence for industrial control systems

被引:6
|
作者
Amrein, A. [1 ]
Angeletti, V. [2 ]
Beitler, A. [3 ]
Nemet, M. [3 ]
Reiser, M. [1 ]
Riccetti, S. [4 ]
Stoecklin, M. Ph [5 ]
Wespi, A. [3 ]
机构
[1] Rapperswil HSR, Hsch Tech, CH-8640 Rapperswil, Switzerland
[2] Enel Global ICT, I-56126 Pisa, Italy
[3] IBM Res Zurich, IBM Res Div, CH-8803 Ruschlikon, Switzerland
[4] IBM Italia, IBM Global Cyber Secur Intelligence & Response Te, I-20090 Segrate, Italy
[5] IBM Thomas J Watson Res Ctr, IBM Res Div, Yorktown Hts, NY 10598 USA
关键词
ANOMALY DETECTION; SCADA SYSTEMS;
D O I
10.1147/JRD.2016.2575698
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
While there is a broad corpus of security intelligence technologies and solutions for IT (information technology) networks, only moderate experience and investment exists in applying security intelligence approaches to OT (operational technology) networks. OT networks have traditionally been isolated from IT networks, and therefore, security has been of minor concern. Given the trend toward interconnecting OT and IT networks for business reasons, and given the disclosure of highly sophisticated attacks against OT environments, OT network operators increasingly recognize the need to deploy security solutions that are widely known in IT also to OT. OT networks are running critical control processes. Configuration changes are avoided to reduce the risk of misconfiguration or unforeseeable side effects detrimental to the network's operation. Therefore, passive non-intrusive security technologies are favored. Consequently, security intelligence applied to passively collected network data is the most acceptable technology to be deployed in OT networks. In this paper, we show how IT-specific security intelligence techniques can be applied to passively collected OT network data. The techniques have been developed for protecting SCADA (Supervisory Control and Data Acquisition) systems and have been validated in an industrial cyber security testing laboratory.
引用
收藏
页数:12
相关论文
共 50 条
  • [1] Cyber Security for Industrial Control Systems
    Cunningham, Steve
    POWER ENGINEERING, 2011, 115 (11) : 142 - +
  • [2] IT SECURITY ASPECTS OF INDUSTRIAL CONTROL SYSTEMS
    Holecko, P.
    Krbilova, I.
    ADVANCES IN ELECTRICAL AND ELECTRONIC ENGINEERING, 2006, 5 (01) : 136 - 139
  • [3] Security Monitoring for Industrial Control Systems
    Coletta, Alessio
    Armando, Alessandro
    SECURITY OF INDUSTRIAL CONTROL SYSTEMS AND CYBER PHYSICAL SYSTEMS, 2016, 9588 : 48 - 62
  • [4] Survey of Industrial Control Systems Security
    Yang T.
    Zhang J.
    Huang Z.
    Chen Y.
    Huang C.
    Zhou W.
    Liu P.
    Feng T.
    Zhang Y.
    Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2022, 59 (05): : 1035 - 1053
  • [5] Cyber Security Provision for Industrial Control Systems
    Amanowicz, Marek
    Jarmakiewicz, Jacek
    TRENDS IN ADVANCED INTELLIGENT CONTROL, OPTIMIZATION AND AUTOMATION, 2017, 577 : 611 - 620
  • [6] Industrial Control Systems Security: What is happening?
    Krotofil, Marina
    Gollmann, Dieter
    2013 11TH IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), 2013, : 664 - 669
  • [7] Industrial Control Systems Security: What is happening?
    Krotofil, Maryna
    Gollmann, Dieter
    2013 11TH IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), 2013, : 670 - 675
  • [8] The drift of industrial control systems to pseudo security
    Donnelly, Peter
    Abuhmida, Mabrouka
    Tubb, Christopher
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2022, 38
  • [9] Strategic Security Protection for Industrial Control Systems
    Takagi, Hitomi
    Morita, Takahito
    Matta, Masafumi
    Moritani, Hiroki
    Hamaguchi, Takashi
    Jing, Sun
    Koshijima, Ichiro
    Hashimoto, Yoshihiro
    2015 54TH ANNUAL CONFERENCE OF THE SOCIETY OF INSTRUMENT AND CONTROL ENGINEERS OF JAPAN (SICE), 2015, : 986 - 992
  • [10] Deep Security Scanner for Industrial Control Systems
    Mahendra, Lagineni
    Hareesh, Reddi
    Kalluri, Rajesh
    Kumar, R. K. Senthil
    Bindhumadhava, B. S.
    2021 IEEE REGION 10 CONFERENCE (TENCON 2021), 2021, : 447 - 452