To Improve Cyber Resilience, Measure It

02/18/2021
by   Alexander Kott, et al.
0

We are not very good at measuring – rigorously and quantitatively – the cyber security of systems. Our ability to measure cyber resilience is even worse. And without measuring cyber resilience, we can neither improve it nor trust its efficacy. It is difficult to know if we are improving or degrading cyber resilience when we add another control, or a mix of controls, to harden the system. The only way to know is to specifically measure cyber resilience with and without a particular set of controls. What needs to be measured are temporal patterns of recovery and adaptation, and not time-independent failure probabilities. In this paper, we offer a set of criteria that would ensure decision-maker confidence in the reliability of the methodology used in obtaining a meaningful measurement.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/28/2023

Quantitative Measurement of Cyber Resilience: Modeling and Experimentation

Cyber resilience is the ability of a system to resist and recover from a...
research
06/26/2020

CyRes – Avoiding Catastrophic Failure in Connected and Autonomous Vehicles (Extended Abstract)

Existing approaches to cyber security and regulation in the automotive s...
research
01/31/2021

How to Measure Cyber Resilience of an Autonomous Agent: Approaches and Challenges

Several approaches have been used to assess the performance of cyberphys...
research
07/18/2023

Dead Man's PLC: Towards Viable Cyber Extortion for Operational Technology

For decades, operational technology (OT) has enjoyed the luxury of being...
research
05/28/2021

The Generation of Security Scoring Systems Leveraging Human Expert Opinion

While the existence of many security elements can be measured (e.g., vul...
research
02/15/2023

An Experimentation Infrastructure for Quantitative Measurements of Cyber Resilience

The vulnerability of cyber-physical systems to cyber attack is well know...

Please sign up or login with your details

Forgot password? Click here to reset