Reference Hub1
Safety and Security in SCADA Systems Must be Improved through Resilience Based Risk Management

Safety and Security in SCADA Systems Must be Improved through Resilience Based Risk Management

Stig O. Johnsen
ISBN13: 9781466647077|ISBN10: 1466647078|EISBN13: 9781466647084
DOI: 10.4018/978-1-4666-4707-7.ch071
Cite Chapter Cite Chapter

MLA

Johnsen, Stig O. "Safety and Security in SCADA Systems Must be Improved through Resilience Based Risk Management." Crisis Management: Concepts, Methodologies, Tools, and Applications, edited by Information Resources Management Association, IGI Global, 2014, pp. 1422-1436. https://doi.org/10.4018/978-1-4666-4707-7.ch071

APA

Johnsen, S. O. (2014). Safety and Security in SCADA Systems Must be Improved through Resilience Based Risk Management. In I. Management Association (Ed.), Crisis Management: Concepts, Methodologies, Tools, and Applications (pp. 1422-1436). IGI Global. https://doi.org/10.4018/978-1-4666-4707-7.ch071

Chicago

Johnsen, Stig O. "Safety and Security in SCADA Systems Must be Improved through Resilience Based Risk Management." In Crisis Management: Concepts, Methodologies, Tools, and Applications, edited by Information Resources Management Association, 1422-1436. Hershey, PA: IGI Global, 2014. https://doi.org/10.4018/978-1-4666-4707-7.ch071

Export Reference

Mendeley
Favorite

Abstract

This chapter describes vulnerabilities related to safety and security in distributed process control systems integrated with information and communication technology (ICT). The author describe key vulnerabilities and how to mitigate these vulnerabilities by current best practices, which have worked in an industrial setting in Norway. Distributed process control systems are denoted as SCADA systems, i.e. supervisory control and data acquisition systems. Increased networking and increased use of ICT impacts the complexity and vulnerability of the SCADA systems. To improve safety and security, there must be a focus on systematic knowledge generation between ICT and process experts and a focus on exploring resilience as a strategy to manage risks and support continuity of operations (resilience seen as the ability to bounce back and sustain operations). Best practices in risk management in this area are to establish policies, improve risk awareness, perform risk assessment in collaboration between ICT and SCADA professionals, focus on segregation of networks, focus on active protection against malicious software, improve reporting and sharing of incidents, and establish and explore disaster/recovery plans. In addition, there should be focus on certification and testing of components in ICT and SCADA systems and improvement of resilience to mitigate uncertainty and complexity.

Request Access

You do not own this content. Please login to recommend this title to your institution's librarian or purchase it from the IGI Global bookstore.