Estimating Impact and Frequency of Risks to Safety and Mission Critical Systems Using CVSS
نویسندگان
چکیده
Many safety and mission critical systems depend on the correct and secure operation of both supportive and core software systems. E.g., both the safety of personnel and the effective execution of core missions on an oil platform depend on the correct recording storing, transfer and interpretation of data, such as that for the Logging While Drilling (LWD) and Measurement While Drilling (MWD) subsystems. Here, data is recorded on site, packaged and then transferred to an on-shore operational centre. Today, the data is transferred on dedicated communication channels to ensure a secure and safe transfer, free from deliberately and accidental faults. However, as the cost control is ever more important some of the transfer will be over remotely accessible infrastructure in the future. Thus, communication will be prone to known security vulnerabilities exploitable by outsiders. This paper presents a model that estimates risk level of known vulnerabilities as a combination of frequency and impact estimates derived from the Common Vulnerability Scoring System (CVSS). The model is implemented as a Bayesian Belief Network (BBN).
منابع مشابه
Evaluating Critical Safety and Health Risks by Job Safety Analysis and Analytic Hierarchy Process in Industrial Printing
Background: Critical risks are one of the most important problems in industries, which have high costs for the industry. This study aimed to assess critical safety and health risks through job safety analysis and analytic hierarchy process in industrial printing. Materials and Methods: The present study was conducted as a descriptive and analytical in one of the printing industries in Iran, in...
متن کاملIdentification and Assessment of Occupational Health and Safety Risks of Activities and Operations of Oil Drilling Rigs Using FMEA Method (Case Study: Southern Yarran Region)
Background: Today, the drilling industry is one of the world's most dangerous occupations because of the many accidents it is facing. Therefore, the study and evaluation of the risks of activities and operations in the drilling industry can be helpful in reducing the accident in this industry. Methods: In this research, the safety and health risk assessment of drilling operations was carried ou...
متن کاملAssessment of Hospital Risks for Occupational Safety of Healthcare Staff against Covid-19 Using FMEA Method and Multi-Criteria Decision-Making Methods (Case study: Department of Infectious Diseases of Bu-Ali hospital in Zahedan)
Introduction and purpose: Risk assessment is a necessity in high-risk work environments like hospitals. During epidemics, the need to maintain the health of healthcare staff increases as they are effective people in controlling the spread of the disease. The purpose of this study was to assess the occupational safety of healthcare staff against coronavirus using FMEA in infectious diseases ward...
متن کاملSafety Risks Impacts Analysis on Construction Project Objectives Using a Hybrid Model of Fuzzy Expert System and Latin Hyper Cube Sampling
Background and aims: The construction industry has a high rate of fatal or nonfatal injuries and all around the world which remains one of the most dangerous occupations till now. Since project safety and measuring danger in the construction industry is a crucial subject, so this study aimed to measure the impacts of safety risks on the time and cost objectives of project using a hybrid method ...
متن کاملThe Impact of Safety Programs on Accident Indicators in a combined cycle power plant
Background: The effectiveness of safety systems is critical to the realization of their goals. Thereششfore, this study was conducted to investigate the role of safety management systems on accidents and the status of safety performance indicators in a combined cycle power plant in 2011. Materials and Methods: This descriptive-analytical research was carried out in two stages in all Yazd Combin...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2008