Electronics | |
Research on the Effectiveness of Cyber Security Awareness in ICS Risk Assessment Frameworks | |
Dequan Yang1  Keyong Wang2  Xiaoyue Guo2  | |
[1] Network Information Technology Center, Beijing Institute of Technology, Beijing 100081, China;School of Continuing Education, Beijing Institute of Technology, Beijing 100081, China; | |
关键词: cyber security awareness; industrial control system; incident response; MP2DR2 risk control matrix; | |
DOI : 10.3390/electronics11101659 | |
来源: DOAJ |
【 摘 要 】
Assessing security awareness among users is essential for protecting industrial control systems (ICSs) from social engineering attacks. This research aimed to determine the effect of cyber security awareness on the emergency response to cyber security incidents in the ICS. Additionally, this study has adopted a variety of cyber security emergency response process measures and frameworks and comprehensively proposes a new organizational model of cyber security incident response. The corresponding measures are evaluated based on the MP2DR2 risk control matrix model to assess their practical value in the evaluation stage. This study found that after adding security awareness measures to response control measures, the influential value ranking of other control measures changed. The practical value of security awareness control measures was given a higher priority than that of other control measures. The research results highlight the importance of cyber security awareness and aim to inspire ICSs to place a higher priority on staff cyber security awareness in relation to cyber security incidents, which can effectively prevent the occurrence of cyber security incidents and make the field of industrial control application agency respond to incidents faster to restore the regular progress of all works.
【 授权许可】
Unknown