Synergistic Security for the Industrial Internet of Things: Integrating Redundancy, Diversity, and Hardening
Title | Synergistic Security for the Industrial Internet of Things: Integrating Redundancy, Diversity, and Hardening |
Publication Type | Conference Paper |
Year of Publication | 2018 |
Authors | Aron Laszka, Waseem Abbas, Yevgeniy Vorobeychik, Xenofon Koutsoukos |
Conference Name | IEEE International Conference on Industrial Internet (ICII) |
Date Published | Oct |
Conference Location | Seattle, WA |
Keywords | actuators, Control, critical infrastructures, cyber physical systems, cyber-attacks, cyber-security risks, IIoT system security, Industrial Internet of Things, industrial platforms, integrated circuits, Internet of Things, Investment, production engineering computing, Redundancy, resilience, resilient IIoT systems, security, security economics, security of data, Transportation, Vanderbilt |
Abstract | As the Industrial Internet of Things (IIot) becomes more prevalent in critical application domains, ensuring security and resilience in the face of cyber-attacks is becoming an issue of paramount importance. Cyber-attacks against critical infrastructures, for example, against smart water-distribution and transportation systems, pose serious threats to public health and safety. Owing to the severity of these threats, a variety of security techniques are available. However, no single technique can address the whole spectrum of cyber-attacks that may be launched by a determined and resourceful attacker. In light of this, we consider a multi-pronged approach for designing secure and resilient IIoT systems, which integrates redundancy, diversity, and hardening techniques. We introduce a framework for quantifying cyber-security risks and optimizing IIoT design by determining security investments in redundancy, diversity, and hardening. To demonstrate the applicability of our framework, we present a case study in water-distribution systems. Our numerical evaluation shows that integrating redundancy, diversity, and hardening can lead to reduced security risk at the same cost. |
URL | http://www.vuse.vanderbilt.edu/~koutsoxd/www/Publications/08539114.pdf |
DOI | 10.1109/ICII.2018.00025 |
Citation Key | 8539114 |
- Internet of Things
- Vanderbilt
- Transportation
- security of data
- security economics
- security
- resilient IIoT systems
- resilience
- Redundancy
- production engineering computing
- Investment
- actuators
- integrated circuits
- industrial platforms
- Industrial Internet of Things
- IIoT system security
- cyber-security risks
- cyber-attacks
- cyber physical systems
- critical infrastructures
- control