2009
DOI: 10.1007/978-3-642-04798-5_3
|View full text |Cite
|
Sign up to set email alerts
|

Risk-Based Criticality Analysis

Abstract: Critical infrastructure protection requires the evaluation of the criticality of infrastructures and the prioritization of critical assets. However, criticality analysis is not yet standardized. This paper examines the relation between risk and criticality. It analyzes the similarities and differences in terms of scope, aims, impact, threats and vulnerabilities; and proposes a generic risk-based criticality analysis methodology. The paper also presents a detailed list of impact criteria for assessing the criti… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

0
22
0

Year Published

2013
2013
2018
2018

Publication Types

Select...
6

Relationship

4
2

Authors

Journals

citations
Cited by 39 publications
(22 citation statements)
references
References 9 publications
0
22
0
Order By: Relevance
“…To this end, we exploit the principle of proportionality by considering that the use of such a method should be solely confined in a critical infrastructure, given a prior user consent [37] [38] [39].…”
Section: Discussionmentioning
confidence: 99%
“…To this end, we exploit the principle of proportionality by considering that the use of such a method should be solely confined in a critical infrastructure, given a prior user consent [37] [38] [39].…”
Section: Discussionmentioning
confidence: 99%
“…In recent CIP research [1,[5][6][7][8], the criticality of an asset depends not only on the potential impact of a security incident on the organization itself, but also on the outgoing societal risk caused to other dependent organizations. For example, if a major energy provider is experiencing a disruption for a certain period (i.e.…”
Section: Assessing Hidden Interdependencies For Critical Infrastructuresmentioning
confidence: 99%
“…Critical Infrastructure Protection (CIP) is usually based on risk assessment reviews [5]. With traditional risk assessment methodologies, a Critical Infrastructure Operator (CIO for short) will assess the information risks of all the assets within the organization, in order to identify the most critical assets.…”
Section: Assessing Hidden Interdependencies For Critical Infrastructuresmentioning
confidence: 99%
“…A common-cause failure can affect multiple infrastructures in different sectors such as government, health, information and communications technology and transportation [16,17]. Each infrastructure that has failed concurrently due to a common-cause failure may lead -with some probability -to multiple cascading chains of failures in its dependent infrastructures.…”
Section: Introductionmentioning
confidence: 99%