Skip to main content
Top

2022 | OriginalPaper | Chapter

12. Cyber Resilience: A Pre-Understanding for an Abductive Research Agenda

Authors : Tor Olav Grøtan, Stian Antonsen, Torgeir Kolstø Haavik

Published in: Resilience in a Digital Age

Publisher: Springer International Publishing

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

Digital transformation turns critical infrastructures into cyber-physical systems, introducing unprecedented levels of complexity and vulnerability. As the evidence of surprise and shocks involving cyber-physical systems is high and rising, concepts of resilience are increasingly enrolled in discourses around vulnerability in critical infrastructures. In this chapter, we discuss the theoretical foundations for a concept of cyber resilience, and the needs, potentials, and pitfalls in this respect. Our aim is to point to a research agenda of abductive reasoning, where a concept of resilience is developed through stepwise, reflexive theoretical advances together with ongoing efforts of empirical grounding in particular cyber-physical domains.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Footnotes
1
Computing systems can always exhibit dynamics and failure modes beyond what they are designed and tested for, triggered by coincidence or deliberation. Reverse engineering is a systematic attempt of revealing exploitable vulnerabilities. Software supply chains may be exploited to insert malicious code via third parties.
 
2
(Based on Wikipedia) A zero-day is a software vulnerability unknown to those who should be interested in its mitigation (including the vendor). Until the vulnerability is mitigated, hackers can exploit it to adversely affect programs, data, additional computers, or a network. Once the vendor learns of the vulnerability, they will usually create patch-es or advise workarounds to mitigate it. The more recently that the vendor has become aware of the vulnerability, the more likely it is that no fix or mitigation has been devel-oped or taken into use. The notion of “forever-days” is sometimes used to denote persis-tent design weaknesses that are not possible to mitigate or eradicate by updates.
 
Literature
go back to reference Alvesson, M., & Sköldberg, K. (2018). Reflexive methodology: New vistas for qualitative research. SAGE Publications. Alvesson, M., & Sköldberg, K. (2018). Reflexive methodology: New vistas for qualitative research. SAGE Publications.
go back to reference Antonsen, S. (n.d.). Between natural and artificial intelligence – digital sustainability in high-risk industries. In Forthcoming book chapter. Springer. Antonsen, S. (n.d.). Between natural and artificial intelligence – digital sustainability in high-risk industries. In Forthcoming book chapter. Springer.
go back to reference Aven, T. (2017). How some types of risk assessments can support resilience analysis and management. Reliability Engineering & System Safety, 167, 536–543.CrossRef Aven, T. (2017). How some types of risk assessments can support resilience analysis and management. Reliability Engineering & System Safety, 167, 536–543.CrossRef
go back to reference Bochman, A. (2018). The end of cybersecurity. Harvard Business Review. Bochman, A. (2018). The end of cybersecurity. Harvard Business Review.
go back to reference Dewey, J. (1999). In L. Hickman & T. Alexander (Eds.), The essential Dewey. Indiana University Press. Dewey, J. (1999). In L. Hickman & T. Alexander (Eds.), The essential Dewey. Indiana University Press.
go back to reference Gadamer, H. (2018). Truth and method. Bloomsbury Academic. Gadamer, H. (2018). Truth and method. Bloomsbury Academic.
go back to reference Grøtan, T. O. (2014). Hunting high and low for resilience: Sensitisation from the contextual shadows of compliance. In Steenbergen et al. (Eds.), Safety, reliability and risk analysis: Beyond the horizon. CRC Press, Taylor & Francis Group. Grøtan, T. O. (2014). Hunting high and low for resilience: Sensitisation from the contextual shadows of compliance. In Steenbergen et al. (Eds.), Safety, reliability and risk analysis: Beyond the horizon. CRC Press, Taylor & Francis Group.
go back to reference Grøtan, T. O. (2015). Organising, thinking and acting resiliently under the imperative of compliance. On the potential impact of resilience thinking on safety management and risk consideration. Doctoral theses. NTNU. Grøtan, T. O. (2015). Organising, thinking and acting resiliently under the imperative of compliance. On the potential impact of resilience thinking on safety management and risk consideration. Doctoral theses. NTNU.
go back to reference Grøtan, T. O. (2020). Training for operational resilience capabilities (TORC); advancing from a positive first response. In Proceedings of the 30th European safety and reliability conference and the 15th probabilistic safety assessment and management conference. Research Publishing. https://doi.org/10.3850/978-981-14-8593-0 CrossRef Grøtan, T. O. (2020). Training for operational resilience capabilities (TORC); advancing from a positive first response. In Proceedings of the 30th European safety and reliability conference and the 15th probabilistic safety assessment and management conference. Research Publishing. https://​doi.​org/​10.​3850/​978-981-14-8593-0 CrossRef
go back to reference Johannessen, S. O. (2019). Strategies, leadership and complexity in crisis and emergency operations. Routledge. Johannessen, S. O. (2019). Strategies, leadership and complexity in crisis and emergency operations. Routledge.
go back to reference Kilskar, S. S. (2020). Socio-technical perspectives on cyber security and definitions of digital transformation – a literature review. In P. Baraldi, F. Di Maio, & E. Zio (Ed.), Proceedings of the 30th European safety and reliability conference and the 15th probabilistic safety assessment and management conference, Research Publishing (pp. 3384–3391). https://doi.org/10.3850/978-981-14-8593-0. Kilskar, S. S. (2020). Socio-technical perspectives on cyber security and definitions of digital transformation – a literature review. In P. Baraldi, F. Di Maio, & E. Zio (Ed.), Proceedings of the 30th European safety and reliability conference and the 15th probabilistic safety assessment and management conference, Research Publishing (pp. 3384–3391). https://​doi.​org/​10.​3850/​978-981-14-8593-0.
go back to reference Kurtz, C. F., & Snowden, D. J. (2003). The new dynamics of strategy: Sense-making in a complex and complicated world. IBM Systems Journal, 42(3), 462–483.CrossRef Kurtz, C. F., & Snowden, D. J. (2003). The new dynamics of strategy: Sense-making in a complex and complicated world. IBM Systems Journal, 42(3), 462–483.CrossRef
go back to reference Pariès, J., Wreathall, J., & Hollnagel, E. (2011). Resilience engineering in practice: A guidebook. CRC Press. Pariès, J., Wreathall, J., & Hollnagel, E. (2011). Resilience engineering in practice: A guidebook. CRC Press.
go back to reference Peirce, C. (1935). Collected papers of Charles Sanders Peirce. Harvard University Press. Peirce, C. (1935). Collected papers of Charles Sanders Peirce. Harvard University Press.
go back to reference Rorty, R. (1980). Philosophy and the Mirror of nature. Blackwell. Rorty, R. (1980). Philosophy and the Mirror of nature. Blackwell.
go back to reference Sætre, A. S., & Van de Ven, A. H. (2021). Generating theory by abduction. Academy of Management.CrossRef Sætre, A. S., & Van de Ven, A. H. (2021). Generating theory by abduction. Academy of Management.CrossRef
go back to reference Weick, K. E., & Sutcliffe, K. M. (2017). Managing the unexpected. Resilient performance in an age of uncertainty. John Wiley & Sons. Weick, K. E., & Sutcliffe, K. M. (2017). Managing the unexpected. Resilient performance in an age of uncertainty. John Wiley & Sons.
go back to reference Woods, D. (2018a). Resilience is a verb. In B. D.-V. Trump (Ed.), IRGC resource guide on resilience (vol. 2): Domains of resilience for complex interconnected systems. EPFL international Risk Governance Center. Woods, D. (2018a). Resilience is a verb. In B. D.-V. Trump (Ed.), IRGC resource guide on resilience (vol. 2): Domains of resilience for complex interconnected systems. EPFL international Risk Governance Center.
go back to reference Woods, D. (2018b). The theory of graceful extensibility: Basic rules that govern adaptive systems. Environment Systems and Decisions, 38(5), 433–457.CrossRef Woods, D. (2018b). The theory of graceful extensibility: Basic rules that govern adaptive systems. Environment Systems and Decisions, 38(5), 433–457.CrossRef
Metadata
Title
Cyber Resilience: A Pre-Understanding for an Abductive Research Agenda
Authors
Tor Olav Grøtan
Stian Antonsen
Torgeir Kolstø Haavik
Copyright Year
2022
DOI
https://doi.org/10.1007/978-3-030-85954-1_12