首页> 外文期刊>Power Delivery, IEEE Transactions on >Asset Analysis of Risk Assessment for IEC 61850-Based Power Control Systems—Part I: Methodology
【24h】

Asset Analysis of Risk Assessment for IEC 61850-Based Power Control Systems—Part I: Methodology

机译:基于IEC 61850的电源控制系统的风险评估的资产分析—第一部分:方法

获取原文
获取原文并翻译 | 示例
       

摘要

Information security risk assessment of IEC 61850-based power control systems is currently an unsolved problem. One of the reasons is a lack of methodology for asset analysis, which is an important process of risk assessment. As the features of IEC 61850-based power control systems are different from general IT systems, a specific methodology of asset analysis is introduced. Based on the requirements of risk assessment proposed in the BS ISO/IEC 27005 standard, the methodology for asset analysis is separated into asset identification and valuation. For asset identification, a structured asset model is defined to distinguish the assets, and a function-oriented business process model is defined to identify the business process and describe the relations between assets and business processes. For asset valuation, in order to objectively reflect the consequence incurred due to the loss of security properties, three levels of value are defined, which is value of information exchange, asset value of function level, and asset value of system level, respectively. Finally, the implementation procedure of the methodology is described. In the companion paper (Part II), an application instance is presented to support the usefulness of the methodology.
机译:基于IEC 61850的电源控制系统的信息安全风险评估目前尚未解决。原因之一是缺乏资产分析的方法,这是风险评估的重要过程。由于基于IEC 61850的电源控制系统的功能不同于一般的IT系统,因此引入了一种特定的资产分析方法。根据BS ISO / IEC 27005标准中提出的风险评估要求,资产分析的方法分为资产识别和评估。对于资产标识,定义了结构化资产模型以区分资产,并定义了面向功能的业务流程模型以标识业务流程并描述资产与业务流程之间的关系。对于资产评估,为了客观地反映由于失去安全属性而导致的后果,定义了三个价值级别,分别是信息交换的价值,功能级别的资产价值和系统级别的资产价值。最后,描述了该方法的实现过程。在随附的论文(第二部分)中,提供了一个应用程序实例以支持该方法的有用性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号