A Multidimensional Holistic Framework for the Security of Distributed Energy and Control Systems
Autor: | Arif I. Sarwat, Danish Saleem, Joshua Rivera, Aditya Sundararajan, Benjamin Kroposki, Anuj Sanghvi |
---|---|
Rok vydání: | 2020 |
Předmět: |
021103 operations research
Computer Networks and Communications Computer science Business process 0211 other engineering and technologies 02 engineering and technology Attack surface Industrial control system Information assurance Computer Science Applications Smart grid Contextual design Risk analysis (engineering) Control and Systems Engineering Microgrid Electrical and Electronic Engineering Resilience (network) Information Systems |
Zdroj: | IEEE Systems Journal. 14:17-27 |
ISSN: | 2373-7816 1932-8184 |
DOI: | 10.1109/jsyst.2019.2919464 |
Popis: | The digitization of smart grid distributed generation and industrial control systems has prompted utilities to deploy tools with ubiquitous communications that potentially widen the attack surface. The utilities still continue to rely on the traditional cybersecurity technologies, such as firewalls, anti-malware tools, and passwords that do not ensure security across all dimensions of the information assurance model required for a strong cybersecurity business process. This paper proposes a multidimensional holistic framework that addresses this gap through advanced technologies, intelligent algorithms, and continued assessments. To show proof, the layered defense model, a solution dimension of the framework, is integrated into the National Renewable Energy Laboratory's Security and Resilience Testbed to replicate a utility's enterprise and substation networks. The model is used to evaluate the security and resilience of microgrid control systems, and, based on the insights gathered, recommend best practices for utility cybersecurity analysts for a strong business process. With this baseline, the paper conceptually introduces intelligence-driven solutions comprising contextual data analysis and machine learning to respond to advanced persistent threats sponsored by campaign efforts. |
Databáze: | OpenAIRE |
Externí odkaz: |