DocumentCode
2923263
Title
EliMet: Security metric elicitation in power grid critical infrastructures by observing system administrators´ responsive behavior
Author
Zonouz, Saman ; Houmansadr, Amir ; Haghani, Parisa
Author_Institution
Univ. of Miami, Miami, FL, USA
fYear
2012
fDate
25-28 June 2012
Firstpage
1
Lastpage
12
Abstract
To protect complex power-grid control networks, efficient security assessment techniques are required. However, efficiently making sure that calculated security measures match the expert knowledge is a challenging endeavor. In this paper, we present EliMet, a framework that combines information from different sources and estimates the extent to which a control network meets its security objective. Initially, during an offline phase, a state-based model of the network is generated, and security-level of each state is measured using a generic and easy-to-compute metric. EliMet then passively observes system operators´ online reactive behavior against security incidents, and accordingly refines the calculated security measure values. Finally, to make the values comply with the expert knowledge, EliMet actively queries operators regarding those states for which sufficient information was not gained during the passive observation. Our experimental results show that EliMet can optimally make use of prior knowledge as well as automated inference techniques to minimize human involvement and efficiently deduce the expert knowledge regarding individual states of that particular system.
Keywords
control engineering computing; inference mechanisms; power engineering computing; power grids; power system control; power system protection; power system security; EliMet; automated inference techniques; bulk electricity delivery system; complex power-grid control network protection; power grid critical infrastructures; security assessment techniques; security incidents; security measures; security metric elicitation; Atmospheric measurements; Monitoring; Particle measurements; Security; Power grid critical infrastructure; intrusion detection and response; security metric; situational awareness;
fLanguage
English
Publisher
ieee
Conference_Titel
Dependable Systems and Networks (DSN), 2012 42nd Annual IEEE/IFIP International Conference on
Conference_Location
Boston, MA
ISSN
1530-0889
Print_ISBN
978-1-4673-1624-8
Electronic_ISBN
1530-0889
Type
conf
DOI
10.1109/DSN.2012.6263941
Filename
6263941
Link To Document