Cost modeling of response actions for automated response and recovery in AMI

作者: Ahmed Fawaz , Robin Berthier , William H. Sanders

DOI: 10.1109/SMARTGRIDCOMM.2012.6486008

关键词: Security serviceComputer security modelComputer securityAttack surfaceGridCloud computing securitySoftware deploymentSmart gridEngineeringSecurity information and event management

摘要: The smart grid is creating new security vulnerabilities due to the deployment of networked devices into traditional grid. A core component advanced metering infrastructures (AMIs), which increase attack surface deployed at households. Manual management incidents in such a large and complex system impractical, need for automated response recovery attacks critical. This paper addresses that challenge through two main contributions. First, we introduce classify an extended set AMI-specific cyber incident actions. Second, define cost model approach translate properties monetary costs. key element enabling engine make optimal decisions mitigate incidents.

参考文章(29)
Natalia Stakhanova, Christopher Roy Strasburg, Samik Basu, Johnny S. Wong, The Methodology for Evaluating Response Cost for Intrusion Response Systems ,(2008)
Steven Furnell, Nathan Clarke, Nor Badrul Anuar, Maria Papadakil, A Risk Index Model for Security Incident Prioritisation ,(2011) , 10.4225/75/57B52A66CD8B5
Wenke Lee, Wei Fan, Matthew Miller, Salvatore J. Stolfo, Erez Zadok, Toward cost-sensitive modeling for intrusion detection and response Journal of Computer Security. ,vol. 10, pp. 5- 22 ,(2002) , 10.3233/JCS-2002-101-202
B. Parno, A. Perrig, V. Gligor, Distributed detection of node replication attacks in sensor networks ieee symposium on security and privacy. pp. 49- 63 ,(2005) , 10.1109/SP.2005.8
Zonghua Zhang, Pin-Han Ho, Liwen He, Measuring IDS-estimated attack impacts for rational incident response: A decision theoretic approach Computers & Security. ,vol. 28, pp. 605- 614 ,(2009) , 10.1016/J.COSE.2009.03.005
Zonghua Zhang, Xiaodong Lin, Pin-Han Ho, Measuring Intrusion Impacts for Rational Response: A State-based Approach international conference on communications. pp. 317- 321 ,(2007) , 10.1109/CHINACOM.2007.4469391
Michael LeMay, Carl A. Gunter, Cumulative Attestation Kernels for Embedded Systems IEEE Transactions on Smart Grid. ,vol. 3, pp. 744- 760 ,(2012) , 10.1109/TSG.2011.2174811
David Grochocki, Jun Ho Huh, Robin Berthier, Rakesh Bobba, William H. Sanders, Alvaro A. Cardenas, Jorjeta G. Jetcheva, AMI threats, intrusion detection requirements and deployment recommendations international conference on smart grid communications. pp. 395- 400 ,(2012) , 10.1109/SMARTGRIDCOMM.2012.6486016