1. Development of a concept for building a critical infrastructure facilities security system
- Author
-
Serhii Yevseiev, Yevgen Melenti, Oleksandr Voitko, Vitalii Hrebeniuk, Anna Korchenko, Serhii Mykus, Oleksandr Milov, Oleksandr Prokopenko, Оleksandr Sievierinov, and Dmytro Chopenko
- Subjects
Computer science ,Reliability (computer networking) ,Stability (learning theory) ,Energy Engineering and Power Technology ,Cryptography ,Industrial and Manufacturing Engineering ,Critical infrastructure ,security system ,Management of Technology and Innovation ,T1-995 ,Industry ,Electrical and Electronic Engineering ,Technology (General) ,business.industry ,Applied Mathematics ,Mechanical Engineering ,modeling method ,HD2321-4730.9 ,threat classifier ,Computer Science Applications ,Variety (cybernetics) ,Transformation (function) ,Risk analysis (engineering) ,critical infrastructure ,Control and Systems Engineering ,Threat model ,State (computer science) ,business ,concept - Abstract
To effectively protect critical infrastructure facilities (CIF), it is important to understand the focus of cybersecurity efforts. The concept of building security systems based on a variety of models describing various CIF functioning aspects is presented. The development of the concept is presented as a sequence of solving the following tasks. The basic concepts related to cyberattacks on CIF were determined, which make it possible to outline the boundaries of the problem and determine the level of formalization of the modeling processes. The proposed threat model takes into account possible synergistic/emergent features of the integration of modern target threats and their hybridity. A unified threat base that does not depend on CIF was formed. The concept of modeling the CIF security system was developed based on models of various classes and levels. A method to determine attacker's capabilities was developed. A concept for assessing the CIF security was developed, which allows forming a unified threat base, assessing the signs of their synergy and hybridity, identifying critical CIF points, determining compliance with regulatory requirements and the state of the security system. The mathematical tool and a variety of basic models of the concept can be used for all CIFs, which makes it possible to unify preventive measures and increase the security level. It is proposed to use post-quantum cryptography algorithms on crypto-code structures to provide security services. The proposed mechanisms provide the required stability (230–235group operations), the rate of cryptographic transformation is comparable to block-symmetric ciphers (BSC) and reliability (Perr10–9–10–12)
- Published
- 2021