Proceedings of the Institute for System Programming of the RAS
RUS  ENG    JOURNALS   PEOPLE   ORGANISATIONS   CONFERENCES   SEMINARS   VIDEO LIBRARY   PACKAGE AMSBIB  
General information
Latest issue
Archive

Search papers
Search references

RSS
Latest issue
Current issues
Archive issues
What is RSS



Proceedings of ISP RAS:
Year:
Volume:
Issue:
Page:
Find






Personal entry:
Login:
Password:
Save password
Enter
Forgotten password?
Register


Proceedings of the Institute for System Programming of the RAS, 2018, Volume 30, Issue 4, Pages 79–94
DOI: https://doi.org/10.15514/ISPRAS-2018-30(4)-5
(Mi tisp348)
 

This article is cited in 3 scientific papers (total in 3 papers)

Towards formal verification of cyber security standards

Tomas Kulik, Peter Gorm Larsen

Aarhus University
References:
Abstract: Cyber security standards are often used to ensure the security of industrial control systems. Nowadays, these systems are becoming more decentralized, making them more vulnerable to cyber attacks. One of the challenges of implementing cyber security standards for industrial control systems is the inability to verify early that they are compliant with the relevant standards. Cyber security standard compliance is also only validated and not formally verified, often not providing strong proofs of correct use of cyber security standard. In this paper, we propose an approach that uses formal analysis to achieve this. We formally define building blocks necessary to define the system formally in order to enable formal modeling of the system and carry out the analysis using the Alloy Analyzer. Our approach can be used at an early design stage, where problems are less expensive to correct, to ensure that the system has the desired security properties. We show the applicability of our approach by modeling two distinct cyber attacks and mitigations strategies used to defend against these attacks and also evaluate our approach based on its flexibility to handle and combine different aspects of the cyber security standards. We discuss the future directions of our research.
Keywords: cyber security, formal analysis, cyber security standards.
Funding agency
This work is partially supported by the Manufacturing Academy of Denmark (MADE) Digital project. For more information see http://www.made.dk/.
Bibliographic databases:
Document Type: Article
Language: English
Citation: Tomas Kulik, Peter Gorm Larsen, “Towards formal verification of cyber security standards”, Proceedings of ISP RAS, 30:4 (2018), 79–94
Citation in format AMSBIB
\Bibitem{KulLar18}
\by Tomas~Kulik, Peter~Gorm~Larsen
\paper Towards formal verification of cyber security standards
\jour Proceedings of ISP RAS
\yr 2018
\vol 30
\issue 4
\pages 79--94
\mathnet{http://mi.mathnet.ru/tisp348}
\crossref{https://doi.org/10.15514/ISPRAS-2018-30(4)-5}
\elib{https://elibrary.ru/item.asp?id=35544586}
Linking options:
  • https://www.mathnet.ru/eng/tisp348
  • https://www.mathnet.ru/eng/tisp/v30/i4/p79
  • This publication is cited in the following 3 articles:
    Citing articles in Google Scholar: Russian citations, English citations
    Related articles in Google Scholar: Russian articles, English articles
    Proceedings of the Institute for System Programming of the RAS
    Statistics & downloads:
    Abstract page:188
    Full-text PDF :87
    References:15
     
      Contact us:
     Terms of Use  Registration to the website  Logotypes © Steklov Mathematical Institute RAS, 2024