首页> 外文会议>International Conference on Developments in Power System Protection >Prioritisation and cost / benefit analysis of cyber security controls within existing operational technology environments
【24h】

Prioritisation and cost / benefit analysis of cyber security controls within existing operational technology environments

机译:现有操作技术环境中网络安全控制的优先级和成本/效益分析

获取原文

摘要

Protection and control (P&C) systems are critical to the operation of electricity transmission and distribution networks. The digitisation of the P&C systems has unlocked many new efficiencies and capabilities but has also brought with it new risks with respect to cyber security. The critical role these devices play in interfacing between the ‘cyber world’ and the ‘physical world’ makes them a target for threats for those who want to cause the greatest interruptions to a nation's electricity supplies. A cyber risk methodology using event trees is proposed to understand the benefits of different cyber security controls within existing substation environments. This moves the industry from a maturity driven and checklist based approach towards a risk driven one based on an understanding of cyber security threats; and allowing organisations to produce a cost benefit assessment which may support planned investment as well as providing a justified position when deciding not to invest in particular areas.
机译:保护和控制(P&C)系统对电力传输和分销网络的运行至关重要。 P&C系统的数字化已经解锁了许多新的效率和能力,但也涉及对网络安全的新风险。这些设备在“网络世界”和“物理世界”之间的接口中扮演的关键作用使他们成为那些想要对国家电力供应引起最大中断的人的威胁的目标。建议使用事件树的网络风险方法来了解现有变电站环境中不同网络安全控制的好处。这将行业从业绩驱动和基于清单的方法转向风险的方法,这是根据对网络安全威胁的理解驱动的风险;并允许组织产生成本效益评估,这些评估可能支持计划投资,并在决定不投资特定领域时提供合理的职位。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号