DocumentCode :
1643186
Title :
Control System Cyber Incident Reporting Protocol
Author :
Hennin, Simon
Author_Institution :
Raytheon Co., Marlborough, MA
fYear :
2008
Firstpage :
463
Lastpage :
468
Abstract :
Information sharing about cyber incidents that affect the normal, safe operation of industrial control systems is not well coordinated or standardized across critical infrastructure sectors of the economy. Consequently there is little situational awareness about the frequency, type and extent of control system cyber incidents - a deficiency with potential national security implications. Control system disruption due to cyber rather than physical means is increasingly a concern of industry and government. More and more control systems utilize commercial off-the-shelf computer technology, and are inter-connected with business enterprise systems and the Internet. Not only are control systems in different sectors interdependent but the commonality of technology means that all sectors face a common cyber threat. These common cyber threats and vulnerabilities present the opportunity for common solutions to be adopted across industry sectors. The solutions include the elimination of vulnerabilities in control system designs and implementations. But with constantly evolving technology and the ever-present threat of cyber attack, tools are needed to support the early detection and timely reporting of control system cyber incidents. A Raytheon-led team is working in consultation with industry and government to define a standard protocol and data schema for the timely reporting of actual and potential cyber attacks on industrial control systems. Previous efforts to share cyber incident information have encountered barriers, including data confidentiality and detection of novel cyber attack methods. Potential solutions to these barriers and deployment approaches for information sharing tools based on the protocol standard are described.
Keywords :
Internet; control engineering computing; cybernetics; industrial control; national security; production engineering computing; security of data; Internet; business enterprise systems; control system cyber incident reporting protocol; cyber threats; industrial control systems; information sharing; national security; Computer security; Control systems; Electrical equipment industry; Frequency; Government; Industrial control; Information security; Protection; Protocols; SCADA systems;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Technologies for Homeland Security, 2008 IEEE Conference on
Conference_Location :
Waltham, MA
Print_ISBN :
978-1-4244-1977-7
Electronic_ISBN :
978-1-4244-1978-4
Type :
conf
DOI :
10.1109/THS.2008.4534497
Filename :
4534497
Link To Document :
بازگشت