SCADA system information security risk assessment method and system

A technology of security risk and system information, applied in the field of SCADA system information security risk assessment method and system, which can solve the problems of complex calculation in the assessment process and inaccurate assessment results.

Active Publication Date: 2018-11-16
BEIJING MUNICIPAL INST OF LABOUR PROTECTION
View PDF5 Cites 13 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0008] In order to overcome the problems of the above-mentioned existing SCADA system information security risk assessment method, such as complex assessment process, two major calcula...

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • SCADA system information security risk assessment method and system
  • SCADA system information security risk assessment method and system
  • SCADA system information security risk assessment method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0027] The specific implementation manners of the present invention will be further described in detail below in conjunction with the accompanying drawings and embodiments. The following examples are used to illustrate the present invention, but are not intended to limit the scope of the present invention.

[0028] Provide a kind of SCADA system information security risk assessment method in one embodiment of the present invention, figure 1 The overall flowchart of the SCADA system information security risk assessment method provided by the embodiment of the present invention, the method includes: S101, according to the causal relationship between each vulnerability factor and each threat factor in the SCADA system to be evaluated, each vulnerability factor and Combining various threat factors to obtain a threat-vulnerability combination;

[0029] Among them, the SCADA system to be evaluated is a SCADA system that requires information security risk assessment. In the informa...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides an SCADA system information security risk assessment method and system. The method includes the following steps: according to a causal relationship between each vulnerability factor and each threat factor in an SCADA system to be assessed, combining each vulnerability factor and each threat factor to obtain threat-vulnerability combinations; according to a corresponding relationship between each threat-vulnerability combination and each asset factor in the SCADA system to be evaluated, combining each threat-vulnerability combination and each asset factor to obtain each risk scenario; and according to the first influence degree of the vulnerability factors on a vulnerability risk indicator of the SCADA system to be assessed in each risk scenario, the second influencedegree of the threat factors on a threat risk indicator, and the third influence degree of the asset factors on an asset risk indicator, obtaining risk assessment results of the risk scenarios. According to the scheme of the invention, the risk assessment results can be quantitatively obtained, and thus the risk assessment results can be more accurate.

Description

technical field [0001] The invention belongs to the technical field of risk assessment, and more specifically relates to a method and system for assessing the risk of information security in a SCADA system. Background technique [0002] SCADA (Supervisory Control And Data Acquisition System, Data Acquisition and Monitoring Control) system is a data acquisition, monitoring and control system for production systems with long-distance distribution and scattered production units. At present, it has been widely used in fields such as electric power, metallurgy, petroleum, chemical industry, gas pipeline network and intelligent production workshop. A typical SCADA system includes man-machine interface, monitoring system, remote terminal control system, field controller and communication network. [0003] SCADA system is a highly networked, automated and intelligent comprehensive system, which may include on-site communication network, remote communication network and Internet, et...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L12/24G06Q10/06
CPCG06Q10/0635H04L41/14H04L41/145H04L63/14H04L63/1433
Inventor 靳江红熊文泽史学玲王晓冬刘瑶
Owner BEIJING MUNICIPAL INST OF LABOUR PROTECTION
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products