首页> 外文会议>International topical meeting on nuclear plant instrumentation, control, and human-machine interface technologies >HIGH ASSURANCE CYBESECURITY CONTROLS AGAINST PERSISTENT AND TARGETED ATTACKS ON INSTRUMENTATION AND CONTROL SYSTEMS IN NUCLEAR FACILITIES
【24h】

HIGH ASSURANCE CYBESECURITY CONTROLS AGAINST PERSISTENT AND TARGETED ATTACKS ON INSTRUMENTATION AND CONTROL SYSTEMS IN NUCLEAR FACILITIES

机译:针对核设施中的仪表和控制系统的持久性和针对性攻击的高安全性网络安全控制

获取原文

摘要

In the paper, an insight into two high assurance cybersecurity plan templates for nuclear facilities, namely the templates of the NRC RG 5.71:2010 and NEI 08-09 Rev.6:2010, is provided. The two cybersecurity plan templates were developed to assist nuclear industry to comply with legal requirements of Title 10 of the U.S. Code of Federal Regulation §73.54. Regarding the compliance with the regulatory requirement, the paper discusses the concept of cybersecurity control overlays as a way to achieve a higher level of assurance that instrumentation and control systems in nuclear facilities are adequately protected against both legacy and advanced targeted attacks. In the paper, the control overlays are considered within the concept of layered defense-in-depth. Examples are shown to illustrate that control overlays applied to individual layers of the defense-in-depth result in a cybersecurity protection that can be modelled as an orthogonal two-dimensional layering of security controls. It is emphasized that the two-dimensional layering of security controls makes each layer of the defense-in-depth protection more robust against both intentional and unintentional compromise and in such way facilitates a higher level of assurance of an adequate protection against advanced cyberattacks.
机译:本文提供了对两个核设施的高保证网络安全计划模板的见解,即NRC RG 5.71:2010和NEI 08-09 Rev.6:2010的模板。开发了两个网络安全计划模板,以帮助核工业遵守美国联邦法规第73.54条第10标题的法律要求。关于遵守法规要求,本文讨论了网络安全控制覆盖的概念,以实现更高级别的确保核设施中的仪器和控制系统受到充分保护,免受传统和高级目标攻击的保证。在本文中,控制覆盖被认为是分层纵深防御的概念。显示示例以说明应用于深层防御的各个层的控制叠加会导致网络安全保护,可以将其建模为安全控制的正交二维分层。要强调的是,安全控制的二维分层结构使纵深防御保护的每一层对有意和无意的破坏都更加健壮,从而以更高的水平确保了对高级网络攻击的足够保护。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号