Ani, UD;
Daniel, N;
Oladipo, F;
Adewumi, SE;
(2018)
Securing industrial control system environments: the missing piece.
Journal of Cyber Security Technology
, 2
(3-4)
pp. 131-163.
10.1080/23742917.2018.1554985.
Preview |
Text
Ani Securing Industrial Control System Environments.pdf - Accepted Version Download (899kB) | Preview |
Abstract
Cyberattacks on industrial control systems (ICSs) are no longer matters of anticipation. These systems are continually subject to malicious attacks without much resistance. Network breaches, data theft, denial of service, and command and control functions are examples of common attacks on ICSs. Despite available security solutions, safety, security, resilience, and performance require both private public sectors to step-up strategies to address increasing security concerns on ICSs. This paper reviews the ICS security risk landscape, including current security solution strategies in order to determine the gaps and limitations for effective mitigation. Notable issues point to a greater emphasis on technology security while discounting people and processes attributes. This is clearly incongruent with; emerging security risk trends, the biased security strategy of focusing more on supervisory control and data acquisition systems, and the emergence of more sector-specific solutions as against generic security solutions. Better solutions need to include approaches that follow similar patterns as the problem trend. These include security measures that are evolutionary by design in response to security risk dynamics. Solutions that recognize and include; people, process and technology security enhancement into asingle system, and addressing all three-entity vulnerabilities can provide a better solution for ICS environments.
Type: | Article |
---|---|
Title: | Securing industrial control system environments: the missing piece |
Open access status: | An open access version is available from UCL Discovery |
DOI: | 10.1080/23742917.2018.1554985 |
Publisher version: | https://doi.org/10.1080/23742917.2018.1554985 |
Language: | English |
Additional information: | This version is the author accepted manuscript. For information on re-use, please refer to the publisher’s terms and conditions. |
Keywords: | Cyber security, SCADA security, cyber-physical security, ICS security, security standards |
UCL classification: | UCL UCL > Provost and Vice Provost Offices > UCL BEAMS UCL > Provost and Vice Provost Offices > UCL BEAMS > Faculty of Engineering Science UCL > Provost and Vice Provost Offices > UCL BEAMS > Faculty of Engineering Science > STEaPP |
URI: | https://discovery-pp.ucl.ac.uk/id/eprint/10090328 |
Archive Staff Only
View Item |