{"title":"基础设施系统数字化中的网络安全风险:一个用例","authors":"D. Möller, H. Vakilzadian","doi":"10.1109/eIT57321.2023.10187348","DOIUrl":null,"url":null,"abstract":"The increasing number and effectiveness of cyber-attacks and data breaches adversely affect infrastructure systems by exploiting their vulnerabilities. Cyber-attacks on critical infrastructure sometimes undermine safe operations or cause complete shutdowns. Therefore, identifying and evaluating the actual status of infrastructure system processes for critical assets in advance requires analyzing the actual cybersecurity status to protect them from potential cyber-attacks and data breaches. So far, the information deficit about cybersecurity awareness in the infrastructure systems sector exists. International studies are more broadly designed, but not directly focused on gaining detailed knowledge about cybersecurity defense's status quo in the infrastructure system sector. Therefore, strategic steps are required to secure the infrastructure systems against cyber-attacks and vulnerabilities. This includes developing and implementing procedures to improve cyber-attack detection and eliminate system vulnerabilities. In this regard, a maturity level model as a specific analysis method of the actual cybersecurity status of the infrastructure system is introduced to gain knowledge about how to achieve the desired to-be-cybersecurity status against the actual status, as a best practice example is provided for a rail system. This paper describes the cybersecurity risk of digitization in the railway sector as a use case.","PeriodicalId":113717,"journal":{"name":"2023 IEEE International Conference on Electro Information Technology (eIT)","volume":"12 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2023-05-18","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Cybersecurity Risk in Digitalization of Infrastructure Systems: A Use Case\",\"authors\":\"D. Möller, H. Vakilzadian\",\"doi\":\"10.1109/eIT57321.2023.10187348\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The increasing number and effectiveness of cyber-attacks and data breaches adversely affect infrastructure systems by exploiting their vulnerabilities. Cyber-attacks on critical infrastructure sometimes undermine safe operations or cause complete shutdowns. Therefore, identifying and evaluating the actual status of infrastructure system processes for critical assets in advance requires analyzing the actual cybersecurity status to protect them from potential cyber-attacks and data breaches. So far, the information deficit about cybersecurity awareness in the infrastructure systems sector exists. International studies are more broadly designed, but not directly focused on gaining detailed knowledge about cybersecurity defense's status quo in the infrastructure system sector. Therefore, strategic steps are required to secure the infrastructure systems against cyber-attacks and vulnerabilities. This includes developing and implementing procedures to improve cyber-attack detection and eliminate system vulnerabilities. In this regard, a maturity level model as a specific analysis method of the actual cybersecurity status of the infrastructure system is introduced to gain knowledge about how to achieve the desired to-be-cybersecurity status against the actual status, as a best practice example is provided for a rail system. This paper describes the cybersecurity risk of digitization in the railway sector as a use case.\",\"PeriodicalId\":113717,\"journal\":{\"name\":\"2023 IEEE International Conference on Electro Information Technology (eIT)\",\"volume\":\"12 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2023-05-18\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2023 IEEE International Conference on Electro Information Technology (eIT)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/eIT57321.2023.10187348\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2023 IEEE International Conference on Electro Information Technology (eIT)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/eIT57321.2023.10187348","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Cybersecurity Risk in Digitalization of Infrastructure Systems: A Use Case
The increasing number and effectiveness of cyber-attacks and data breaches adversely affect infrastructure systems by exploiting their vulnerabilities. Cyber-attacks on critical infrastructure sometimes undermine safe operations or cause complete shutdowns. Therefore, identifying and evaluating the actual status of infrastructure system processes for critical assets in advance requires analyzing the actual cybersecurity status to protect them from potential cyber-attacks and data breaches. So far, the information deficit about cybersecurity awareness in the infrastructure systems sector exists. International studies are more broadly designed, but not directly focused on gaining detailed knowledge about cybersecurity defense's status quo in the infrastructure system sector. Therefore, strategic steps are required to secure the infrastructure systems against cyber-attacks and vulnerabilities. This includes developing and implementing procedures to improve cyber-attack detection and eliminate system vulnerabilities. In this regard, a maturity level model as a specific analysis method of the actual cybersecurity status of the infrastructure system is introduced to gain knowledge about how to achieve the desired to-be-cybersecurity status against the actual status, as a best practice example is provided for a rail system. This paper describes the cybersecurity risk of digitization in the railway sector as a use case.