首页> 外文期刊>Security Journal >Intelligent building systems: security and facility professionals' understanding of system threats, vulnerabilities and mitigation practice
【24h】

Intelligent building systems: security and facility professionals' understanding of system threats, vulnerabilities and mitigation practice

机译:智能建筑系统:安全和设施专业人员对系统威胁,漏洞和缓解实践的理解

获取原文
获取原文并翻译 | 示例
           

摘要

Intelligent Buildings or Building Automation and Control Systems (BACS) are becoming common in buildings, driven by the commercial need for functionality, sharing of information, reduced costs and sustainable buildings. The facility manager often has BACS responsibility; however, their focus is generally not on BACS security. Nevertheless, if a BACS-manifested threat is realised, the impact to a building can be significant, through denial, loss or manipulation of the building and its services, resulting in loss of information or occupancy. Therefore, this study garnered a descriptive understanding of security and facility professionals' knowledge of BACS, including vulnerabilities and mitigation practices. Results indicate that the majority of security and facility professionals hold a general awareness of BACS security issues, although they lacked a robust understanding to meet necessary protection. For instance, understanding of 23 BACS vulnerabilities were found to be equally critical with limited variance. Mitigation strategies were no better, with respondents indicating poor threat diagnosis. In contrast, cybersecurity and technical security professionals such as integrators or security engineering design professionals displayed a robust understanding of BACS vulnerabilities and resulting mitigation strategies. Findings support the need for greater awareness for both security management and facility professionals of BACS vulnerabilities and mitigation strategies.
机译:智能建筑或楼宇自动化和控制系统(BACS)在建筑物中变得普遍,由商业需求,信息,信息分享,降低成本和可持续建筑物的推动。设施经理经常担任责任;然而,他们的重点通常不是BACS安全性。尽管如此,如果实现了BACS表现的威胁,通过拒绝,丢失或操纵建筑物及其服务,对建筑物的影响可能是显着的,导致信息丢失或占用。因此,本研究获得了对安全和设施专业人员对BAC的了解的描述性了解,包括脆弱性和缓解措施。结果表明,大多数安全和设施专业人员对BACS安全问题的一般性认识,尽管他们缺乏稳健的理解,以满足必要的保护。例如,对23个BACS漏洞的理解被发现与有限的方差相同关键。缓解策略并不更好,受访者表明威胁诊断差。相比之下,集成商或安全工程设计专业人员等网络安全和技术安全专业人员对BACS漏洞产生了强大的理解,并导致缓解策略。调查结果支持对BACS漏洞和缓解策略的安全管理和设施专业人士更加了解。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号