IT Security Model for Computing Unit Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing computing unit systems face challenges in effectively verifying and assessing their information technology security against cyber attacks, which can lead to production failures and significant costs.
Innovation Solution
A method involving the creation of an IT model of a computing unit system, either in hardware and/or software, to simulate and test its resistance to cyber attacks, allowing for the evaluation of security parameters and the assessment of the system's overall security posture.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If security test attacks are carried out on the actual computing unit system, then the information security of the system can be verified, but the system may suffer real damage or downtime
Solution Approach 1:
The patent creates a replica model of the computing unit system that copies the essential structure and security characteristics of the original system. Security test attacks are performed on this replica instead of the actual system, allowing verification of security measures without risking damage to the real system. The replica maintains sufficient fidelity to provide meaningful security assessment while being safe to attack.
2Reliability
If comprehensive security testing is performed on the computing unit system, then security vulnerabilities can be identified, but the complexity of the testing process increases
Solution Approach 1:
The patent divides the security testing process into distinct segments: creating the replica model, executing test attacks on the replica, and analyzing results. This segmentation allows comprehensive security testing to be performed in a structured manner, managing complexity by separating the testing activities from the actual system while maintaining thoroughness in security assessment.
3Reliability
If the computing unit system is taken offline for security verification, then thorough security testing can be performed, but productivity and operational continuity are reduced
Solution Approach 1:
By using a replica model for security testing, the patent enables thorough security verification to be performed without taking the actual computing unit system offline. The replica serves as a surrogate that can be fully tested while the original system remains operational, maintaining productivity and operational continuity throughout the security assessment process.
Data Source
AI summary
A method for verifying the information technology security of a computing unit system which includes at least one computing unit. The method includes: providing an information technology model of at least a part of the computing unit system; carrying out at least one information security test attack on the model; receiving data from the model that characterizes a response of the model to the information security test attack; determining at least one parameter in accordance with the received data; evaluating the at least one parameter and assessing the information security-related security of the computing unit system in accordance with the evaluation.
