Back to Search Start Over

A cyber resilience analysis case study of an industrial operational technology environment.

Authors :
Perrett, Kirsty
Wilson, Ian David
Source :
Environment Systems & Decisions; Jun2023, Vol. 43 Issue 2, p178-190, 13p
Publication Year :
2023

Abstract

Cyber resilience is an active research area offering a novel approach to Cyber Security. The term appeared due to the concerning number of cyber-attacks on critical infrastructure. The National Institute of Standards and Technology (NIST) developed a framework to assist organisations with techniques and approaches to improving cyber resilience. However, there are a sparsity of case studies that speak to the adoption or measurement of these novel approaches within a complex industrial control environment. This paper presents a case study analysis of a manufacturing plant assessment drawing on key themes from the NIST literature. The paper presents how well NIST constructs can be adopted to find cyber-resilient enhancement opportunities and to decide if an evaluation of the results could supply a quantitative baseline measure of an organisation's overall resilience. Conclusions drawn show that although the framework did partially aid with the analysis process, the frameworks ease of adoption assume an organisation has a conventional cyber security foundation; NIST should make this clear within their guidance. Furthermore, the accompanying evaluation process was not sufficient to quantitatively measure the overall cyber resilience maturity for this case study. [ABSTRACT FROM AUTHOR]

Details

Language :
English
ISSN :
21945403
Volume :
43
Issue :
2
Database :
Complementary Index
Journal :
Environment Systems & Decisions
Publication Type :
Academic Journal
Accession number :
163414083
Full Text :
https://doi.org/10.1007/s10669-023-09895-1