DocumentCode :
3722859
Title :
Model-Based Cybersecurity Assessment with NESCOR Smart Grid Failure Scenarios
Author :
Sumeet Jauhar;Binbin Chen;William G. Temple;Xinshu Dong;Zbigniew Kalbarczyk;William H. Sanders;David M. Nicol
Author_Institution :
Adv. Digital Sci. Center, Illinois at Singapore, Singapore, Singapore
fYear :
2015
Firstpage :
319
Lastpage :
324
Abstract :
The transformation of traditional power systems to smart grids brings significant benefits, but also exposes the grids to various cyber threats. The recent effort led by US National Electric Sector Cybersecurity Organization Resource (NESCOR) Technical Working Group 1 to compile failure scenarios is an important initiative to document typical cybersecurity threats to smart grids. While these scenarios are an invaluable thought-aid, companies still face challenges in systematically and efficiently applying the failure scenarios to assess security risks for their specific infrastructure. In this work, we develop a model-based process for assessing the security risks from NESCOR failure scenarios. We extend our cybersecurity assessment tool, Cyber-SAGE, to support this process, and use it to analyze 25 failure scenarios. Our results show that CyberSAGE can generate precise and structured security argument graphs to quantitatively reason about the risk of each failure scenario. Further, CyberSAGE can significantly reduce the assessment effort by allowing the reuse of models across different failure scenarios, systems, and attacker profiles to perform "what if?" analysis.
Keywords :
"Smart grids","Unified modeling language","Computer security","Density estimation robust algorithm","Risk management","Companies"
Publisher :
ieee
Conference_Titel :
Dependable Computing (PRDC), 2015 IEEE 21st Pacific Rim International Symposium on
Type :
conf
DOI :
10.1109/PRDC.2015.37
Filename :
7371879
Link To Document :
بازگشت