Published February 18, 2023 | Version v1
Conference paper Open

A Hybrid Dynamic Risk Analysis Methodology for Cyber-Physical Systems

  • 1. Department of Digital Systems, University of Piraeus, Greece
  • 2. Department of Information and Communication Systems Engineering, University of the Aegean, Greece
  • 3. Department of Cultural Technology and Communication, University of the Aegean, Greece

Description

Abstract. Recent technological advances allow us to design and implement sophisticated infrastructures to assist users’ everyday life; technological paradigms such as Intelligent Transportation Systems (ITS) and Multi-modal Transport are excellent instances of those cases. Therefore, a systematic risk evaluation process in conjunction with proper threat identification are essential for environments like those mentioned above as they involve human safety. Threat modelling is the process of identifying and understanding threats while risk analysis is the process of identifying and analyzing potential risks. This research initially focuses on the most widely-used threat modelling and risk analysis approaches and reviewing their characteristics. Then, it presents a service-oriented dynamic risk analysis approach that focuses on Cyber-Physical Systems (CPS) by adopting threat modelling characteristics and by blending other methods and well-established sources to achieve automation in several stages. Finally, it provides the qualitative features of the proposed method and other related threat modelling and risk analysis approaches with a discussion regarding their similarities, differences, advantages and drawbacks.

Files

A_Hybrid_Dynamic_Risk_Analysis_Methodology_for_Cyber_Physical_Systems-Final.zenodo.pdf

Additional details

Funding

CitySCAPE – CitySCAPE: City-level Cyber-Secure Multimodal Transport Ecosystem 883321
European Commission