首页> 外文会议>American Nuclear Society;Conference on Nuclear Plant Instrumentation, Control and Human-Machine Interface Technologies >IAEA Coordinated Research Project on Enhancing Incident Response at Nuclear Facilities
【24h】

IAEA Coordinated Research Project on Enhancing Incident Response at Nuclear Facilities

机译:原子能机构关于加强核设施事件响应的协调研究项目

获取原文

摘要

In June 2016, the IAEA commenced a new coordinated research project (CRP) J02008 titledEnhancing Computer Security Incident Response at Nuclear Facilities. The objective of this CRPis to conduct activities which support improved computer security capabilities at nuclear facilitiesto support the prevention and detection of, and response to, computer security incidents that havethe potential to either directly or indirectly adversely affect nuclear safety and nuclear security.This CRP provides the opportunity to participate in four activities to enhance computer securityincident analysis and response: (1) Operator support for computer security incident recognitionand response; (2) Analysis and technology support for computer security incident response; (3)Computer security Information Exchange; and (4) Cyber Crime Investigation.To achieve these aims, 17 institutes from 13 countries began to conduct research and developmenton design and construction of research environments that reflect and perform like nuclear facilitiesand/or their I&C systems.The oversight and coordination of the project led to the definition of three roles: (1)Facility/System Builders; (2) Threat Modellers; and (3) Capability Providing Organizations.Facility/System Builders are organizations that are intending to build mock-ups of nuclear systemsas part of their research. The current completed efforts are the first release of a model/simulatorthat can simulate the impact of cyber attacks on a hypothetical facility. The model/simulator canalso be used with compatible hardware in the loop systems.Threat Modellers are organizations that are developing Design Basis Threat (DBT), Scenarios, andThreat Tactics, Techniques and Procedures (TTP). The objective of these organizations is to buildupon existing threat models and information exchange to establish a possible threat modelapplicable to nuclear security.Capability Providing Organizations are organizations that can provide specific capabilities toothers in the CRP that stem from their background expertise and/or the research they will beconducting in the CRP, e.g., on vulnerability assessment, security controls assessment, policies.These organizations will be using IEC cyber security standards as a common basis on which topostulate, design, and implement computer security measures with respect to incident response.This paper will provide a summary of the research approaches and the results of the CRP J02008,and preview the final results expected by the end of 2019.
机译:2016年6月,国际原子能机构开始了一个新的协调研究项目(CRP)J02008,题为 加强核设施的计算机安全事件响应。此CRP的目标 将开展支持改善核设施计算机安全能力的活动 支持预防和检测具有以下特征的计算机安全事件,并对这些事件做出响应 直接或间接对核安全和核保安产生不利影响的潜力。 该CRP提供了参与四项活动以增强计算机安全性的机会 事件分析和响应:(1)操作员对计算机安全事件识别的支持 和回应; (2)对计算机安全事件响应的分析和技术支持; (3) 计算机安全信息交换; (4)网络犯罪调查。 为了实现这些目标,来自13个国家的17个研究所开始进行研发 研究和设计像核设施一样能反映和执行的研究环境 和/或其I&C系统。 项目的监督和协调导致了三个角色的定义:(1) 设施/系统建设者; (2)威胁建模者; (三)能力提供组织。 设施/系统建造者是打算建造核系统模型的组织 作为他们研究的一部分。当前完成的工作是模型/模拟器的第一个版本 可以模拟网络攻击对假设设施的影响。模型/模拟器可以 还可以与环路系统中的兼容硬件一起使用。 威胁建模者是正在开发设计基准威胁(DBT),方案和组织的组织。 威胁战术,技术和程序(TTP)。这些组织的目标是建立 根据现有的威胁模型和信息交换来建立可能的威胁模型 适用于核安保。 能力提供组织是可以为以下人员提供特定能力的组织: CRP中的其他人员,由于他们的背景专业知识和/或研究,他们将成为 在CRP中进行,例如,漏洞评估,安全控制评估,政策。 这些组织将使用IEC网络安全标准作为共同基础, 假设,设计和实施针对事件响应的计算机安全措施。本文将对CRP J02008的研究方法和结果进行总结, 并预览到2019年底的最终结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号