Ontology and life cycle of knowledge for ICS security assessments
Author(s) -
Christopher Tebbe,
Karl-Heinz Niemann,
Alexander Fay
Publication year - 2016
Publication title -
electronic workshops in computing
Language(s) - English
Resource type - Conference proceedings
ISSN - 1477-9358
DOI - 10.14236/ewic/ics2016.5
Subject(s) - computer science , ontology , security testing , variety (cybernetics) , computer security , computer security model , work (physics) , security information and event management , cloud computing security , engineering , cloud computing , philosophy , epistemology , mechanical engineering , artificial intelligence , operating system
Industrial Control Systems (ICS) succumb to an ever evolving variety of threats. Additionally, threats are increasing in number and get more complex. This requires a holistic and up-to-date security concept for ICS as a whole. Usually security concepts are applied and updated based on regularly performed ICS security assessments. Such ICS security assessments require high effort and extensive knowledge about ICS and its security. This is often a problem for small and medium-sized enterprises. (SME), which do not have sufficient respective sufficiently skilled human resources. This paper defines in a first step requirements on the knowledge needed to perform an ICS security assessment and the life cycle of this knowledge. Afterwards the ICS security knowledge and its life cycle are developed and discussed considering the requirements and related work.
Accelerating Research
Robert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom
Address
John Eccles HouseRobert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom