Journal article 687 views 63 downloads
A Novel System-Theoretic Matrix-Based Approach to Analysing Safety and Security of Cyber-Physical Systems
Telecom, Volume: 2, Issue: 4, Pages: 536 - 553
Swansea University Author: Giedre Sabaliauskaite
-
PDF | Version of Record
© 2021 by the authors. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license
Download (1.02MB)
DOI (Published version): 10.3390/telecom2040030
Abstract
Cyber-Physical Systems (CPSs) are getting increasingly complex and interconnected. Consequently, their inherent safety risks and security risks are so intertwined that the conventional analysis approaches which address them separately may be rendered inadequate. STPA (Systems-Theoretic Process Analy...
Published in: | Telecom |
---|---|
ISSN: | 2673-4001 |
Published: |
MDPI AG
2021
|
Online Access: |
Check full text
|
URI: | https://cronfa.swan.ac.uk/Record/cronfa61834 |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Abstract: |
Cyber-Physical Systems (CPSs) are getting increasingly complex and interconnected. Consequently, their inherent safety risks and security risks are so intertwined that the conventional analysis approaches which address them separately may be rendered inadequate. STPA (Systems-Theoretic Process Analysis) is a top-down hazard analysis technique that has been incorporated into several recently proposed integrated Safety and Security (S&S) analysis methods. This paper presents a novel methodology that leverages not only STPA, but also custom matrices to ensure a more comprehensive S&S analysis. The proposed methodology is demonstrated using a case study of particular commercial cloud-based monitoring and control system for residential energy storage systems. |
---|---|
Keywords: |
cyber-physical system; hazard analysis; safety analysis; security analysis; STPA; STAMP; FMEA; STRIDE; matrix |
College: |
Faculty of Science and Engineering |
Funders: |
This work was supported in part by the National Research Foundation (NRF), Prime
Minister’s Office, Singapore, under its National Cybersecurity R&D Programme (NRF2018-NCR003-
0018) and administered by the Energy Market Authority (EMA) Singapore. |
Issue: |
4 |
Start Page: |
536 |
End Page: |
553 |