Development of a cyber security risk model using Bayesian networks

被引:64
|
作者
Shin, Jinsoo [1 ]
Son, Hanseong [2 ]
Ur, Rahman Khalil [1 ]
Heo, Gyunyoung [1 ]
机构
[1] Kyung Hee Univ, Yongin 446701, Gyeonggi Do, South Korea
[2] Joongbu Univ, Geumsan Gun 312702, Chungnam, South Korea
关键词
Cyber security; Activity-quality; Architecture analysis; Bayesian network; Reactor protection system; Research reactor; FRAMEWORK;
D O I
10.1016/j.ress.2014.10.006
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
Cyber security is an emerging safety issue in the nuclear industry, especially in the instrumentation and control (I&C) field. To address the cyber security issue systematically, a model that can be used for cyber security evaluation is required. In this work, a cyber security risk model based on a Bayesian network is suggested for evaluating cyber security for nuclear facilities in an integrated manner. The suggested model enables the evaluation of both the procedural and technical aspects of cyber security, which are related to compliance with regulatory guides and system architectures, respectively. The activity-quality analysis model was developed to evaluate how well people and/or organizations comply with the regulatory guidance associated with cyber security. The architecture analysis model was created to evaluate vulnerabilities and mitigation measures with respect to their effect on cyber security. The two models are integrated into a single model, which is called the cyber security risk model, so that cyber security can be evaluated from procedural and technical viewpoints at the same time. The model was applied to evaluate the cyber security risk of the reactor protection system (RPS) of a research reactor and to demonstrate its usefulness and feasibility. (C) 2014 Elsevier Ltd. All rights reserved.
引用
收藏
页码:208 / 217
页数:10
相关论文
共 50 条
  • [1] Cyber Security Risk Evaluation of a Nuclear I&C Using BN and ET
    Shin, Jinsoo
    Son, Hanseong
    Heo, Gyunyoung
    NUCLEAR ENGINEERING AND TECHNOLOGY, 2017, 49 (03) : 517 - 524
  • [2] Application of Bayesian Network to Data-Driven Cyber-Security Risk Assessment in SCADA Networks
    Huang, Kaixing
    Zhou, Chunjie
    Tian, Yu-Chu
    Tu, Weixun
    Peng, Yuan
    2017 27TH INTERNATIONAL TELECOMMUNICATION NETWORKS AND APPLICATIONS CONFERENCE (ITNAC), 2017, : 96 - 101
  • [3] Cyber Security Risk Analysis Model Composed with Activity-quality and Architecture Model
    Shin, Jinsoo
    Son, Hanseong
    Heo, Gyunyoung
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON COMPUTER, NETWORKS AND COMMUNICATION ENGINEERING (ICCNCE 2013), 2013, 30 : 609 - 612
  • [4] Biologically Inspired Risk Assessment in Cyber Security using Neural Networks
    Mihai-Gabriel, Ionita
    Patriciu, Victor-Valeriu
    2014 10TH INTERNATIONAL CONFERENCE ON COMMUNICATIONS (COMM), 2014,
  • [5] A survey on neural networks for (cyber-) security and (cyber-) security of neural networks
    Pawlicki, Marek
    Kozik, Rafal
    Choras, Michal
    NEUROCOMPUTING, 2022, 500 : 1075 - 1087
  • [6] Bayesian Network Models in Cyber Security: A Systematic Review
    Chockalingam, Sabarathinam
    Pieters, Wolter
    Teixeira, Andre
    van Gelder, Pieter
    SECURE IT SYSTEMS, NORDSEC 2017, 2017, 10674 : 105 - 122
  • [7] Improving risk assessment model of cyber security using fuzzy logic inference system
    Alali, Mansour
    Almogren, Ahmad
    Hassan, Mohammad Mehedi
    Rassan, Iehab A. L.
    Bhuiyan, Md Zakirul Alam
    COMPUTERS & SECURITY, 2018, 74 : 323 - 339
  • [8] Cyber Security in Healthcare Networks
    Dogaru, Delia Ioana
    Dumitrache, Ioan
    2017 IEEE INTERNATIONAL CONFERENCE ON E-HEALTH AND BIOENGINEERING CONFERENCE (EHB), 2017, : 414 - 417
  • [9] ASSESSING SECURITY RISK FOR WIRELESS SENSOR NETWORKS UNDER CYBER ATTACK
    Yarbrough, Brian
    Wagner, Neal
    PROCEEDINGS OF THE ANNUAL SIMULATION SYMPOSIUM (ANSS 2018), 2018, 50 (02):
  • [10] Governing Cyber Security through Networks: An Analysis of Cyber Security Coordination in Belgium
    Rondelez, Rafael
    INTERNATIONAL JOURNAL OF CYBER CRIMINOLOGY, 2018, 12 (01): : 300 - 315