Visible to the public Application of Capability-Based Cyber Risk Assessment Methodology to a Space System

TitleApplication of Capability-Based Cyber Risk Assessment Methodology to a Space System
Publication TypeConference Paper
Year of Publication2018
AuthorsMcNeil, Martha, Llansó, Thomas, Pearson, Dallas
Conference NameProceedings of the 5th Annual Symposium and Bootcamp on Hot Topics in the Science of Security
PublisherACM
Conference LocationNew York, NY, USA
ISBN Number978-1-4503-6455-3
Keywordscyber, Human Behavior, human factors, Metrics, pubcrawl, resilience, Resiliency, risk assessment, Scalability, security, Security Risk Estimation
Abstract

Despite more than a decade of heightened focus on cybersecurity, cyber threats remain an ongoing and growing concern [1]-[3]. Stakeholders often perform cyber risk assessments in order to understand potential mission impacts due to cyber threats. One common approach to cyber risk assessment is event-based analysis which usually considers adverse events, effects, and paths through a system, then estimates the effort/likelihood and mission impact of such attacks. When conducted manually, this type of approach is labor-intensive, subjective, and does not scale well to complex systems. As an alternative, we present an automated capability-based risk assessment approach, compare it to manual event-based analysis approaches, describe its application to a notional space system ground segment, and discuss the results.

URLhttps://dl.acm.org/citation.cfm?doid=3190619.3190644
DOI10.1145/3190619.3190644
Citation Keymcneil_application_2018