STRIDE to a Secure Smart Grid in a Hybrid Cloud
Autor: | Imre Lendak, Marina Stanojevic, Bojan Jelacic, Sebastijan Stoja, Daniela Rosic |
---|---|
Rok vydání: | 2017 |
Předmět: |
Measure (data warehouse)
business.industry Computer science STRIDE 020206 networking & telecommunications Cloud computing 02 engineering and technology Industrial control system Computer security computer.software_genre Smart grid Software 0202 electrical engineering electronic engineering information engineering Community cloud 020201 artificial intelligence & image processing business Risk assessment computer |
Zdroj: | Computer Security ISBN: 9783319728162 CyberICPS/SECPRE@ESORICS |
DOI: | 10.1007/978-3-319-72817-9_6 |
Popis: | This paper describes one possible migration scenario of Smart Grid Industrial Control System (ICS) elements to the computing cloud while maintaining the existing level of information system security. We performed a software centric threat analysis of the Smart Grid ICS, i.e. the most important elements of the system were analyzed following the STRIDE methodology. Security risks were analyzed based on the combined effects of the likelihood of a successful attack and the impact on the identified critical components of the Smart Grid ICS. Risk matrices were used to determine the measure of the security risk. Based on our threat analysis we propose a migration scenario to a hybrid (community & private) cloud. In our scenario, the ICS elements with higher risk tolerance were deployed in a community cloud, while the elements with lower risk tolerance were kept on premise in a private cloud. |
Databáze: | OpenAIRE |
Externí odkaz: |