A human factor-centric validation of a security management system in a linked critical infrastructure environment

在关联的关键基础设施环境中,以人为因素为中心的安全管理系统验证

阅读:1

Abstract

This work reports the human factors-related validation results of a security system for the protection of linked critical infrastructures against combined cyber-physical attacks conducted in the European Horizon 2020 project PRAETORIAN (Protection of Critical Infrastructures from advanced combined cyber and physical threats). In order to prevent or mitigate interruption of services to the public, the protection of critical infrastructures is of high importance. The PRAETORIAN toolset is specifically designed to support security managers of critical infrastructures in their decision-making processes. It enables them to anticipate, manage, and withstand potential cyber, physical, or combined security threats that could target their own infrastructures or interconnected critical infrastructures. These threats could have a substantial impact and potentially compromise the safety and security of the population residing in their vicinities. The toolset consists of four primary systems: the physical, the cyber and the hybrid situation awareness and the coordinated response system. Each system is composed of different modules. Central to the toolset is the interconnecting interoperability platform. This interconnection facilitates seamless information exchange across all systems' modules, ensures efficient data storage, prevents data duplication and inconsistencies, and replicates any changes made. The focus of the validation was put on the operators' feedback assessment. In four exercises, attack scenarios were presented to groups of operators along with demonstrations of the PRAETORIAN tools. Feedback was collected using questionnaires, debriefing, and open questions. Key validation results show that the system offers benefits for cross-infrastructure security management, but improvements to systems and human-machine interfaces, procedures, and responsibilities are required.

特别声明

1、本页面内容包含部分的内容是基于公开信息的合理引用;引用内容仅为补充信息,不代表本站立场。

2、若认为本页面引用内容涉及侵权,请及时与本站联系,我们将第一时间处理。

3、其他媒体/个人如需使用本页面原创内容,需注明“来源:[生知库]”并获得授权;使用引用内容的,需自行联系原作者获得许可。

4、投稿及合作请联系:info@biocloudy.com。