首页> 外文会议>IEEE World Forum on Internet of Things >Towards effective security control assignment in the Industrial Internet of Things
【24h】

Towards effective security control assignment in the Industrial Internet of Things

机译:朝向工业互联网上有效的安全控制分配

获取原文

摘要

The Industrial Internet of Things (IIoT), enabled by sensor driven computing, industrial analytics and intelligent machine applications, is driving new growth opportunities and operational efficiency for enterprises across a range of commercial sectors. Increasing interconnectivity of industrial infrastructure, however, has expanded the attack surface and made it a prominent target of cyber attacks. Recent cyber attack campaigns against Industrial Control Systems (ICS), such as Stuxnet and Night Dragon, have shown the rise in level of sophistication of such attacks and the need to rethink ICS security. Although there is merit in applying security controls designed for enterprise/IT infrastructures to IIoT, this by itself is insufficient. In this paper we argue the need to rethink how security controls are applied to IIoT, and account for the unique nuances of its architecture stack and operational processes. We also propose a new framework for analyzing effectiveness of security controls in IIoT environments, and show how it can be used by security architects to design and deploy new systems.
机译:由传感器驱动的计算,工业分析和智能机器应用启用的工业互联网(IIT),推动了各种商业部门的企业的新增长机会和运营效率。然而,提高产业基础设施的互连性扩展了攻击面,使其成为网络攻击的突出目标。最近的网络攻击对工业控制系统(IC)的竞争,例如Stuxnet和Night Dragon,这些攻击的复杂程度升高,需要重新思考ICS安全性。虽然在应用于IIOT的企业/ IT基础架构设计的安全控制方面,但这本身就不足了。在本文中,我们认为需要重新思考安全控制如何应用于IIT,并占其体系结构堆栈和操作流程的独特细微差别。我们还提出了一种新的框架,用于分析IIT环境中安全控制的有效性,并展示安全架构师如何使用设计和部署新系统。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号