Αποτίμηση επικινδυνότητας σε κρίσιμες και εξαρτώμενες επικοινωνιακές και πληροφοριακές υποδομές

View/ Open
Subject
Ανάλυση και σχεδίαση συστημάτων ; Πληροφοριακά συστήματα -- Διοίκηση και οργάνωση ; Διαχείριση κινδύνου ; Πληροφοριακά συστήματα -- Μέτρα ασφαλείαςAbstract
Assessing risk in Critical (Information) Infrastructures is a complex issue due to the presence of dynamic (inter)dependencies existing between such Infrastructures. Once a failure occurs, the situation is worsened, since both the dependencies and the criticality of Infrastructures are modified. In such cases, in order for risk assessment to be performed, predefined steps should be followed. Despite growing interest in this field, research has mainly focused on first-order cascading failures. In other words, there is a lack of a specified method regarding the risk assessment of the three key failure types; cascading, escalating and common cause in n-order dependencies. The proposed methodology serves the above purpose, utilizing existing dependency graphs in Infrastructure level. The key element is that the risk assessment is performed in Component level aiming to provide more detailed results. The role of new technology in attacks’ and vulnerabilities’ progress of Critical (Information) Infrastructures is also taken into consideration, while a case study is presented for better understanding of the proposed methodology.