• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. Towards Computer-Aided Security Life Cycle Management for Critical Industrial Control Systems
 
  • Details
  • Full
Options
2019
Conference Paper
Title

Towards Computer-Aided Security Life Cycle Management for Critical Industrial Control Systems

Abstract
Critical infrastructure experienced a transformation from isolated towards highly (inter-)connected systems. This development introduced a variety of new cyber threats, causing high financial damage, threatening lives and affecting the society. Known examples are Stuxnet, WannaCry and the attacks on the Ukrainian power grid. To prevent such attacks, it is indispensable to properly design, assess and maintain countermeasures and security strategies throughout the whole life cycle of the critical systems. For this, security has to be considered and assessed for every system design and redesign. However, common assessment tools and methodologies are not executed on a detailed system knowledge and therefore they are enhanced with penetration tests. Unfortunately, performing only abstract assessments is inadequate and penetration tests endanger the availability of the tested systems. Therefore, the latter cannot be performed on live systems executing critical processes. In this paper, we address these issues for Industrial Control Systems and explain how new concepts for continuous security-by-design or model-based system monitoring and automated vulnerability assessments can resolve them by exploiting new Industry 4.0 developments.
Author(s)
Patzer, Florian  
Meshram, A.
Birnstill, Pascal  
Haas, Christian  
Beyerer, Jürgen  
Mainwork
Critical Information Infrastructures Security. 13th International Conference, CRITIS 2018  
Conference
International Conference on Critical Information Infrastructures Security (CRITIS) 2018  
DOI
10.1007/978-3-030-05849-4_4
Language
English
Fraunhofer-Institut für Optronik, Systemtechnik und Bildauswertung IOSB  
Keyword(s)
  • ICS Security

  • critical infrastructure security

  • security-by-design

  • automated vulnerability assessment

  • security life cycle management

  • defense-in-depth

  • knowledge base

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024