Skip to main content
Top

2017 | OriginalPaper | Chapter

Assessing Loss Event Frequencies of Smart Grid Cyber Threats: Encoding Flexibility into FAIR Using Bayesian Network Approach

Authors : Anhtuan Le, Yue Chen, Kok Keong Chai, Alexandr Vasenev, Lorena Montoya

Published in: Smart Grid Inspired Future Technologies

Publisher: Springer International Publishing

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

Assessing loss event frequencies (LEF) of smart grid cyber threats is essential for planning cost-effective countermeasures. Factor Analysis of Information Risk (FAIR) is a well-known framework that can be applied to consider threats in a structured manner by using look-up tables related to a taxonomy of threat parameters. This paper proposes a method for constructing a Bayesian network that extends FAIR, for obtaining quantitative LEF results of high granularity, by means of a traceable and repeatable process, even for fuzzy input. Moreover, the proposed encoding enables sensitivity analysis to show how changes in fuzzy input contribute to the LEF. Finally, the method can highlight the most influential elements of a particular threat to help plan countermeasures better. The numerical results of applying the method to a smart grid show that our Bayesian model can not only provide evaluation consistent with FAIR, but also supports more flexible input, more granular output, as well as illustrates how individual threat components contribute to the LEF.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literature
1.
go back to reference Knapp, E.D., Samani, R.: Applied Cyber Security and the Smart Grid: Implementing Security Controls into the Modern Power Infrastructure. Elsevier Science, Burlington (2013) Knapp, E.D., Samani, R.: Applied Cyber Security and the Smart Grid: Implementing Security Controls into the Modern Power Infrastructure. Elsevier Science, Burlington (2013)
3.
go back to reference Jung, O., Besser, S., Ceccarelli, A., Zoppi, T., Vasenev, A., Montoya Morales, A.L., et al.: Towards a collaborative framework to improve urban grid resilience. In: Presented at the IEEE International Energy Conference, ENERGYCON 2016, Leuven, Belgium (2016) Jung, O., Besser, S., Ceccarelli, A., Zoppi, T., Vasenev, A., Montoya Morales, A.L., et al.: Towards a collaborative framework to improve urban grid resilience. In: Presented at the IEEE International Energy Conference, ENERGYCON 2016, Leuven, Belgium (2016)
4.
go back to reference NIST, Risk management guide for information technology systems (2002) NIST, Risk management guide for information technology systems (2002)
5.
go back to reference Farahmand, F., Navathe, S.B., Sharp, G.P., Enslow, P.H.: A management perspective on risk of security threats to information systems. Inf. Technol. Manage. 6, 203–225 (2005)CrossRef Farahmand, F., Navathe, S.B., Sharp, G.P., Enslow, P.H.: A management perspective on risk of security threats to information systems. Inf. Technol. Manage. 6, 203–225 (2005)CrossRef
6.
go back to reference Sun, L., Srivastava, R.P., Mock, T.J.: An information systems security risk assessment model under the Dempster-Shafer theory of belief functions. J. Manage. Inf. Syst. 22, 109–142 (2006)CrossRef Sun, L., Srivastava, R.P., Mock, T.J.: An information systems security risk assessment model under the Dempster-Shafer theory of belief functions. J. Manage. Inf. Syst. 22, 109–142 (2006)CrossRef
7.
go back to reference Peltier, T.R.: Information Security Risk Analysis. CRC Press, New York (2005)CrossRef Peltier, T.R.: Information Security Risk Analysis. CRC Press, New York (2005)CrossRef
8.
go back to reference Shameli-Sendi, A., Aghababaei-Barzegar, R., Cheriet, M.: Taxonomy of information security risk assessment (ISRA). Comput. Secur. 57, 14–30 (2016)CrossRef Shameli-Sendi, A., Aghababaei-Barzegar, R., Cheriet, M.: Taxonomy of information security risk assessment (ISRA). Comput. Secur. 57, 14–30 (2016)CrossRef
9.
go back to reference Jones, J.: An introduction to factor analysis of information risk (fair). Norwich J. Inf. Assur. 2, 67 (2006) Jones, J.: An introduction to factor analysis of information risk (fair). Norwich J. Inf. Assur. 2, 67 (2006)
10.
go back to reference Vasenev, A., Montoya, L., Ceccarelli, A., Le, A., Ionita, D.: Threat navigator: grouping and ranking malicious external threats to current and future urban smart grids. In: Presented at the SmartGifts Conference on Smart Grid Inspired Future Technologies (2016) Vasenev, A., Montoya, L., Ceccarelli, A., Le, A., Ionita, D.: Threat navigator: grouping and ranking malicious external threats to current and future urban smart grids. In: Presented at the SmartGifts Conference on Smart Grid Inspired Future Technologies (2016)
12.
go back to reference Dui, H., Zhang, L.-L., Sun, S.-D., Si, S.-B.: The study of multi-objective decision method based on Bayesian network. In: 2010 IEEE 17th International Conference on Industrial Engineering and Engineering Management (IE&EM), pp. 694–698 (2010) Dui, H., Zhang, L.-L., Sun, S.-D., Si, S.-B.: The study of multi-objective decision method based on Bayesian network. In: 2010 IEEE 17th International Conference on Industrial Engineering and Engineering Management (IE&EM), pp. 694–698 (2010)
Metadata
Title
Assessing Loss Event Frequencies of Smart Grid Cyber Threats: Encoding Flexibility into FAIR Using Bayesian Network Approach
Authors
Anhtuan Le
Yue Chen
Kok Keong Chai
Alexandr Vasenev
Lorena Montoya
Copyright Year
2017
DOI
https://doi.org/10.1007/978-3-319-47729-9_5

Premium Partner