【24h】

Human Factors Challenges in Developing Cyber-Informed Risk Assessment for Critical Infrastructure

机译:人类因素挑战在为关键基础设施开发网络知识风险评估

获取原文

摘要

Research efforts in the security of cyber physical systems often focus solely on technological aspects of security and ignore the human contributions to risk and resilience. However, ask any IT security admin what the greatest threat to their system is and they'll quickly tell you, "the user." While the threat of users is well established, humans are involved in the security of systems to a much larger degree. Humans interact with these systems at every stage of their lifecycle, from initial design to end-of-life: Humans design the components and structures of the physical system, they construct the facility, design the control logic, configure the networks and security controls, maintain the equipment, and operate the system. Ignoring the humans in the system means ignoring your largest source of risk. This paper describes the ways in which humans can contribute to risk using the electric grid as an example.
机译:网络物理系统安全中的研究努力通常仅关注安全的技术方面,并忽视人类造成风险和恢复力的贡献。 但是,向任何IT安全管理员询问对其系统最大的威胁是什么,他们会很快告诉你,“用户。” 虽然用户的威胁已经成熟,但人类涉及系统的安全程度。 人类在其生命周期的每个阶段与这些系统互动,从初始设计到寿命结束:人类设计物理系统的组件和结构,它们构建设施,设计控制逻辑,配置网络和安全控制, 维护设备,并操作系统。 忽略系统中的人类意味着忽略了您最大的风险来源。 本文介绍了人类可以使用电网作为示例的风险促进风险的方式。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号