scholarly journals Cyber security training for critical infrastructure protection: A literature review

2021 ◽  
Vol 40 ◽  
pp. 100361
Author(s):  
Nabin Chowdhury ◽  
Vasileios Gkioulos
Author(s):  
Clemith J. Houston Jr. ◽  
Douglas C. Sicker

This paper provides a literature review and survey of maturity and process capability models, Critical Infrastructure Protection (CIP) tools and frameworks to identify strategies for assessing and measuring resilience and risk management capabilities, with a specific focus on the electricity generating sector. The focus is on the use of models such as CERT-RMM, and others, as a means of addressing challenges associated with cyber security and risk management. Foundational concepts, terminology and definitions are provided; examples of maturity and process capability models are presented and discussed, tools that enable process capability and resilience are identified, including those specific to the electricity generating sector. The evolution of models and how they have addressed challenges is presented, in addition to the characteristics and differences of models and the growth in domains where they can be used. The benefits of the application of process capability and maturity models in maintaining and enhancing resilience and cyber security protection is supported in this paper and recommendations for research opportunities that may yield further insight and measurement capabilities are offered.


Author(s):  
Clemith J. Houston Jr. ◽  
Douglas C. Sicker

This paper provides a literature review and survey of maturity and process capability models, Critical Infrastructure Protection (CIP) tools and frameworks to identify strategies for assessing and measuring resilience and risk management capabilities, with a specific focus on the electricity generating sector. The focus is on the use of models such as CERT-RMM, and others, as a means of addressing challenges associated with cyber security and risk management. Foundational concepts, terminology and definitions are provided; examples of maturity and process capability models are presented and discussed, tools that enable process capability and resilience are identified, including those specific to the electricity generating sector. The evolution of models and how they have addressed challenges is presented, in addition to the characteristics and differences of models and the growth in domains where they can be used. The benefits of the application of process capability and maturity models in maintaining and enhancing resilience and cyber security protection is supported in this paper and recommendations for research opportunities that may yield further insight and measurement capabilities are offered.


2013 ◽  
Vol 3 (3) ◽  
pp. 80-87 ◽  
Author(s):  
L. Tabansky

Cyber Warfare holds a grave hazard of striking national infrastructure while circumventing traditional defense systems. This article examines the evolution of Critical Infrastructure Protection (CIP) policy in Israel and analyses its performance. Israel has developed a unique legal and regulatory model for critical infrastructure protection, which was implemented in late 2002. Recently, a comprehensive review of cyber security posture has been conducted, and significant policy changes are in progress. The Israeli approach to CIP and beyond, fostering cooperation between public, security, academic and private sectors, appears to be successful. This study of the evolution of Israeli Critical Infrastructure Protection policy may assist policy-making in other countries.


Author(s):  
Christer Pursiainen

Abstract The article is an analytical state-of-the-art review of the Russian Federation’s critical infrastructure policy, starting from the 1990s but zooming in on the current situation. The article discusses what does critical infrastructure mean in the Russian context. It explores the country’s threat scenarios in this field, and asks what part is played by cyber security threats in this context. Further, the article elaborates the issue whether Russia’s policy is focused on critical infrastructure protection, or has the country adopted the more recent concept of resilience that puts emphasis on adaptive measures and recovery. Finally, it is considered who are the actors in Russian critical infrastructure policy and, in particular, how does Russia deal with the fact that the respective infrastructure operators even in Russia usually are not directly state-owned entities, but private companies.


Sign in / Sign up

Export Citation Format

Share Document