Guidelines for cyber risk management in shipboard operational technology systems

03/08/2022
by   Priyanga Rajaram, et al.
0

Over the past few years, we have seen several cyber incidents being reported, where some of the primary causes were the lack of proper security controls onboard the ship and crew awareness on cybersecurity. In response to the growing cyber threat landscape in the maritime sector, we have developed a set of guidelines for maritime cyber risk management, focusing on four major shipboard Operational Technology (OT) systems that are crucial for the day-to-day operation of ships. These four OT systems are: Communication Systems, Propulsion, Machinery and Power Control Systems, Navigation Systems and Cargo Management Systems. The guidelines identify the cyber risks in each of the OT systems and recommend the necessary actions that can be taken to manage risks in each shipboard OT system. In this paper, we introduce the new guidelines, which include cyber risks, mitigation measures, cyber risk assessment, and a checklist to help shipowners and maritime authorities assess and enhance cyber hygiene of their vessels. Our guidelines have been disseminated by the Maritime and Port Authority of Singapore (MPA) to owners and operators of the Singapore Registry of Ships for their reference and use.

READ FULL TEXT
research
05/25/2020

Digitalization of COVID-19 pandemic management and cyber risk from connected systems

What makes cyber risks arising from connected systems challenging during...
research
04/03/2018

Optimal Cyber Insurance Policy Design for Dynamic Risk Management and Mitigation

Recently, with the growing number of cyber-attacks and the constant lack...
research
02/09/2023

Pricing cyber-insurance for systems via maturity models

Risks associated with information technology systems present a complex m...
research
07/27/2022

Railway cyber-security in the era of interconnected systems: a survey

Technological advances in the telecommunications industry have brought s...
research
10/09/2021

Emergent Insight of the Cyber Security Management for Saudi Arabian Universities: A Content Analysis

While cyber security has become a prominent concept of emerging informat...
research
09/06/2022

Building up Cyber Resilience by Better Grasping Cyber Risk Via a New Algorithm for Modelling Heavy-Tailed Data

Cyber security and resilience are major challenges in our modern economi...
research
05/04/2021

Aggregate Cyber-Risk Management in the IoT Age: Cautionary Statistics for (Re)Insurers and Likes

In this paper, we provide (i) a rigorous general theory to elicit condit...

Please sign up or login with your details

Forgot password? Click here to reset