A Method of Entropy Weight Quantitative Risk Assessment for the Safety and Security Integration of a Typical Industrial Control System

被引:10
作者
Mi, Junpeng [1 ]
Huang, Wenjun [1 ]
Chen, Mengchi [1 ]
Zhang, Wei [2 ]
机构
[1] Zhejiang Univ, Dept Control Sci & Engn, Hangzhou 310027, Peoples R China
[2] Zhejiang Supcon Technol Co Ltd, Dept Ind Commun Technol, Hangzhou 310053, Peoples R China
关键词
Security; Safety; Risk management; Process control; Collaboration; Industries; Entropy; Security and safety integrated; fuzzy analytic hierarchy process; failure mode; risk assessment; grey relation analysis;
D O I
10.1109/ACCESS.2021.3091136
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Aiming at the risk assessment requirements of typical industrial control systems with integrated architecture of security and safety, we propose an objective and quantitative integrated security and safety assessment scheme based on Fuzzy Analytic Hierarchy Process (FAHP). First, we establish a safety and security integrated (SSI) architecture for typical industrial control systems with security measures integrated into safety failure modes. On this basis, we establish a hierarchical model of risk assessment with SSI failure mode as an element of the evaluation layer, and then standardize characteristic values of various safety-related heterogeneous index parameters. We design an entropy weight method that uses Grey Relation Analysis (GRA) method to modify the correlation of multiple indicators as a parameter strategy for determining the relative importance of element layer and evaluation layer and then use the membership function method of fuzzy statistical method to obtain the membership degree of hierarchical elements, and finally obtain the failure risk level value of equipment and system by fuzzy comprehensive evaluation. Based on a typical distributed control system, we build an experimental platform to test and verify the risk assessment plan, and compared with expert experience parameter method. The result shows that the scheme takes into account the correlation between indicators which measure the SSI risk level of industrial control system, and the entropy weight method is used to evaluate the risk of industrial control system which can overcome the subjectivity and uncertainty of individual judgment. Furthermore, the quantitative evaluation of system risk is completed by using fuzzy statistical method in the case of industrial control system without prior knowledge, and the idea of this scheme has a wide range of engineering value.
引用
收藏
页码:90919 / 90932
页数:14
相关论文
共 21 条
[1]  
Chockalingam S., 2016, Proceedings of International Conference on Critical Information Infrastructures Security, P50
[2]   Vulnerability Analysis of Network Scanning on SCADA Systems [J].
Coffey, Kyle ;
Smith, Richard ;
Maglaras, Leandros ;
Janicke, Helge .
SECURITY AND COMMUNICATION NETWORKS, 2018,
[3]  
Ellis A., 2015, P 10 IET SYST SAF CY P 10 IET SYST SAF CY, P1
[4]  
Gonzalez L., 2020, P 39 JORN AUT BAD SP P 39 JORN AUT BAD SP, P838
[5]   Fuzzy-analytical-hierarchy process in failure mode and effect analysis (FMEA) to identify process failure in the warehouse of a cement industry [J].
Hassan, Azmi ;
Purnomo, Muhammad Ridwan Andi ;
Anugerah, Adhe Rizky .
JOURNAL OF ENGINEERING DESIGN AND TECHNOLOGY, 2019, 18 (02) :378-388
[6]  
Hristova A, 2014, IEEE ANN INT CONF CY, P264, DOI 10.1109/CYBER.2014.6917472
[7]   Fuzzy FMEA with a guided rules reduction system for prioritization of failures [J].
Kai Meng Tay ;
Lim, Chee .
INTERNATIONAL JOURNAL OF QUALITY & RELIABILITY MANAGEMENT, 2006, 23 (08) :1047-+
[8]  
Kosmowski K. T., 2015, J POLISH SAF REL ASS, V6, P31
[9]   A survey of approaches combining safety and security for industrial control systems [J].
Kriaa, Siwar ;
Pietre-Cambacedes, Ludovic ;
Bouissou, Marc ;
Halgand, Yoran .
RELIABILITY ENGINEERING & SYSTEM SAFETY, 2015, 139 :156-178
[10]   Quantitative security and safety analysis with attack-fault trees [J].
Kumar, Rajesh ;
Stoelinga, Marielle .
2017 IEEE 18TH INTERNATIONAL SYMPOSIUM ON HIGH ASSURANCE SYSTEMS ENGINEERING (HASE 2017), 2017, :25-32