{"title":"工业控制系统中的网络安全:信息技术和操作技术的集成","authors":"M. Wiboonrat","doi":"10.1109/IECON49645.2022.9968468","DOIUrl":null,"url":null,"abstract":"The Industrial Control Systems (ICS) consists of supervisory control and data acquisition (SCADA) systems, distributed control systems (DCS), safety instrumented systems (SIS), and other control system configurations such as programmable logic controllers (PLC). These systems are vulnerable to cyber-attacks. Security against cyber-attacks is becoming more crucial for the ICS industries. The cyber-attacks could be carried out simultaneously at many SCADA, DCS, and SIS systems. The researcher deployed NIST.SP.800-61r2, NIST.SP.800-82r2, IEC 62443 series, and Purdue Enterprise Reference Architecture (PERA) as a guide to implementing cybersecurity approaches to protect them from these threats. The ten industrial plants used cases such as chemical processing, power generation, oil and gas processing, and petroleum processing have been investigated subject to the four main types of vulnerability in cyber security; network; operating system; human; and process vulnerabilities. This research approach is intended to lead to innovative, game-changing capabilities for an incident response plan (IRP) according to cybersecurity Spectrum Security SL2 and SL4 models for the critical ICS.","PeriodicalId":125740,"journal":{"name":"IECON 2022 – 48th Annual Conference of the IEEE Industrial Electronics Society","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-10-17","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Cybersecurity in Industrial Control Systems: An integration of information technology and operational technology\",\"authors\":\"M. Wiboonrat\",\"doi\":\"10.1109/IECON49645.2022.9968468\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The Industrial Control Systems (ICS) consists of supervisory control and data acquisition (SCADA) systems, distributed control systems (DCS), safety instrumented systems (SIS), and other control system configurations such as programmable logic controllers (PLC). These systems are vulnerable to cyber-attacks. Security against cyber-attacks is becoming more crucial for the ICS industries. The cyber-attacks could be carried out simultaneously at many SCADA, DCS, and SIS systems. The researcher deployed NIST.SP.800-61r2, NIST.SP.800-82r2, IEC 62443 series, and Purdue Enterprise Reference Architecture (PERA) as a guide to implementing cybersecurity approaches to protect them from these threats. The ten industrial plants used cases such as chemical processing, power generation, oil and gas processing, and petroleum processing have been investigated subject to the four main types of vulnerability in cyber security; network; operating system; human; and process vulnerabilities. This research approach is intended to lead to innovative, game-changing capabilities for an incident response plan (IRP) according to cybersecurity Spectrum Security SL2 and SL4 models for the critical ICS.\",\"PeriodicalId\":125740,\"journal\":{\"name\":\"IECON 2022 – 48th Annual Conference of the IEEE Industrial Electronics Society\",\"volume\":\"1 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2022-10-17\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"IECON 2022 – 48th Annual Conference of the IEEE Industrial Electronics Society\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/IECON49645.2022.9968468\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"IECON 2022 – 48th Annual Conference of the IEEE Industrial Electronics Society","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/IECON49645.2022.9968468","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Cybersecurity in Industrial Control Systems: An integration of information technology and operational technology
The Industrial Control Systems (ICS) consists of supervisory control and data acquisition (SCADA) systems, distributed control systems (DCS), safety instrumented systems (SIS), and other control system configurations such as programmable logic controllers (PLC). These systems are vulnerable to cyber-attacks. Security against cyber-attacks is becoming more crucial for the ICS industries. The cyber-attacks could be carried out simultaneously at many SCADA, DCS, and SIS systems. The researcher deployed NIST.SP.800-61r2, NIST.SP.800-82r2, IEC 62443 series, and Purdue Enterprise Reference Architecture (PERA) as a guide to implementing cybersecurity approaches to protect them from these threats. The ten industrial plants used cases such as chemical processing, power generation, oil and gas processing, and petroleum processing have been investigated subject to the four main types of vulnerability in cyber security; network; operating system; human; and process vulnerabilities. This research approach is intended to lead to innovative, game-changing capabilities for an incident response plan (IRP) according to cybersecurity Spectrum Security SL2 and SL4 models for the critical ICS.