산업제어시스템 디지털 I&C 계통의 발달 및 보급의 확대는 운영의 자동화를 통해 편리성이 향상된 반면 디지털 제어 시스템의 취약성 문제로 인해 기존 IT 환경에서 문제를 일으키던 다양한 ...

http://chineseinput.net/에서 pinyin(병음)방식으로 중국어를 변환할 수 있습니다.
변환된 중국어를 복사하여 사용하시면 됩니다.
산업제어시스템 디지털 I&C 계통의 발달 및 보급의 확대는 운영의 자동화를 통해 편리성이 향상된 반면 디지털 제어 시스템의 취약성 문제로 인해 기존 IT 환경에서 문제를 일으키던 다양한 ...
산업제어시스템 디지털 I&C 계통의 발달 및 보급의 확대는 운영의 자동화를 통해 편리성이 향상된 반면 디지털 제어 시스템의 취약성 문제로 인해 기존 IT 환경에서 문제를 일으키던 다양한 사이버보안 위협에 직면하고 있다. 특히, 최근 발생한 Stuxnet과 같은 사례를 통해 물리적 보안 요소만으로는 디지털 I&C 계통에 안전성이 보장되지 못하다는 것이 증명되었다. 따라서 폐쇄적 환경의 안전성에 대한 기존 인식에서 벗어나 새로운 관점을 통해 사이버보안 접근 방법이 요구된다.
본 연구에서는 산업보안을 위한 상황인지기반 평가 모델 설계 방법을 제시한다. 제안하는 방법은 사이버보안 위협을 분석하기 위한 방법으로 첫째, 산업제어시스템에서 제시하고 있는 사이버보안의 정의 및 고려사항을 분석한다. 둘째, IT 보안 자료를 이용하여 산업제어시스템 보안 평가를 위한 세부사항을 분석하고 이를 활용하기 위한 상황인지 사이버보안 평가 모델을 제시한다. 구체적으로 산업제어시스템에서 요구하는 보안 위협 요소를 분석하고 자산의 보안성을 평가하기 위해 상황인지 기술을 연구한다. 셋째, 제시하는 모델을 적용하기 위한 평가 툴 개발 방법을 제시한다.
결과적으로 본 논문에서 제시하는 산업보안을 위한 상황인지기반 평가 모델 설계는 시스템의 불법적인 접근 위협, 정상적인 운영 및 서비스를 방해하는 위험들, 중요 데이터 유출, 변조 그리고 삭제등 각각의 위협 요소들 간의 연결성을 정의하여 대응 방안을 제시하여 보다 안전한 산업제어시스템 설계를 효과적으로 지원한다.
다국어 초록 (Multilingual Abstract)
Diverse cyber security issues due to the vulnerability of the digital control systems have been brought up in the existing IT environments while advancement and propagation of digital I&C(Instrumentation and Control) in ICS(Industrial Control System) ...
Diverse cyber security issues due to the vulnerability of the digital control systems have been brought up in the existing IT environments while advancement and propagation of digital I&C(Instrumentation and Control) in ICS(Industrial Control System) have improved convenience through automation. The recent example of Stuxnet proved that stability in the digital I&C system could not be secured due to an air gap of physical security elements. Therefore, it is required to discover new approaches toward cyber security that will overcome the limitation on security in a closed environment.
This research suggests a context aware based vulnerability evaluation model(CAVEM) for digital I&C in ICS. The model has consisted of three parts. First, a preliminary study on the definition and analysis of cyber security assessment methods in ICS. Second, a study on the suggestion of context aware based vulnerability evaluation and use method for ICS. Third, a methodology of developing design to apply cyber security evaluation tool.
The study has supported safety design methods for ICS. Especially, the model supported definitions methods of relation with each threat elements and suggested mitigation actions.
목차 (Table of Contents)