Human-centric introduction to a complex cybersecurity standard
- Industrial automation and control systems (IACS) operate in complex and increasingly networked environments of industrial plants. Due to the increasing number of cyber attacks, these systems are also exposed to the growing threat of being attacked. IACS are often found in critical infrastructure such as power supply or water treatment plants, as well as in industry, so their compromise can result in devastating consequences. To prevent this, the IEC-62443 series of standards was developed to address the cybersecurity of IACS. In order to achieve cybersecurity in accordance with the IEC-62443 standard, the human factor plays a major role, as it is humans that need to implement and manage the cybersecurity controls. To help those users to get started and gain a basic understanding of important IEC-62443 concepts such as zones and conduits, defense in depth, and security levels, this paper defines an experience-based practical approach to train users w.r.t. application and implementation of the standard.
Author: | Jan Eißler, Marko SchubaORCiD, Tim Höner, Sacha HackORCiD, Georg Neugebauer |
---|---|
DOI: | https://doi.org/10.54941/ahfe1004249 |
Parent Title (English): | Human-Centered Design and User Experience |
Publisher: | AHFE Open Access |
Place of publication: | New York |
Document Type: | Conference Proceeding |
Language: | English |
Year of Completion: | 2023 |
Tag: | Competence; Cybersecurity; Human factor; IEC-62443; Industrial automation and control systems; Training |
Volume: | 114 |
First Page: | 313 |
Last Page: | 321 |
Note: | 14th AHFE International Conference on Human Factors in Design, Engineering, and Computing for All, (AHFE 2023 Hawaii Edition), December 4-6, 2023, Hawaii, USA |
Link: | https://openaccess-api.cms-conferences.org/articles/download/978-1-958651-90-2_34 |
Zugriffsart: | weltweit |
Institutes: | FH Aachen / Fachbereich Elektrotechnik und Informationstechnik |
open_access (DINI-Set): | open_access |