Nothing Special   »   [go: up one dir, main page]

skip to main content
10.5555/2666795.2666821acmconferencesArticle/Chapter ViewAbstractPublication PagesicseConference Proceedingsconference-collections
research-article

On the role of primary and secondary assets in adaptive security: an application in smart grids

Published: 04 June 2012 Publication History

Abstract

Adaptive security aims to protect valuable assets managed by a system, by applying a varying set of security controls. Engineering adaptive security is not an easy task. A set of effective security countermeasures should be identified. These countermeasures should not only be applied to (primary) assets that customers desire to protect, but also to other (secondary) assets that can be exploited by attackers to harm the primary assets. Another challenge arises when assets vary dynamically at runtime. To accommodate these variabilities, it is necessary to monitor changes in assets, and apply the most appropriate countermeasures at runtime. The paper provides three main contributions for engineering adaptive security. First, it proposes a modeling notation to represent primary and secondary assets, along with their variability. Second, it describes how to use the extended models in engineering security requirements and designing required monitoring functions. Third, the paper illustrates our approach through a set of adaptive security scenarios in the customer domain of a smart grid. We suggest that modeling secondary assets aids the deployment of countermeasures, and, in combination with a representation of assets variability, facilitates the design of monitoring functions.

References

[1]
M. Salehie, L. Pasquale, I. Omoronyia, R. Ali, and B. Nuseibeh, "Requirements-Driven Adaptive Security: Protecting Variable Assets At Runtime," Lero- Irish Software Eng. Research Centre, Tech. Rep. Lero-TR-2012-01, 2012.
[2]
"Smart Grids European Technology Platform," http://www.smartgrids.eu/.
[3]
G. Kiczales et al., "Aspect-Oriented Programming," in Proceedings of the 11th European Conference on Object-Oriented Programming, 1997, pp. 220--242.
[4]
"The AspectJ Project," http://www.eclipse.org/aspectj/.
[5]
H. Debar, M. Dacier, and A. Wespi, "A revised taxonomy for intrusion-detection systems," Annals of Telecommunications, vol. 55, no. 7, pp. 361--378, 2000.
[6]
K. Julisch, "Clustering intrusion detection alarms to support root cause analysis," ACM Transactions on Information and System Security, vol. 6, no. 4, pp. 443--471, 2003.
[7]
Atighetchi et al., "Adaptive cyberdefense for survival and intrusion tolerance," Internet Computing, IEEE, vol. 8, no. 6, pp. 25--33, 2004.
[8]
J. Weise, "Desiging an adaptive security architecture," 2008, wikis.sun.com/download/attachments/57526796/820-6825.pdf.

Cited By

View all
  • (2012)Adaptive security and privacy in smart gridsProceedings of the First International Workshop on Software Engineering Challenges for the Smart Grid10.5555/2666759.2666769(46-49)Online publication date: 3-Jun-2012

Recommendations

Comments

Please enable JavaScript to view thecomments powered by Disqus.

Information & Contributors

Information

Published In

cover image ACM Conferences
SEAMS '12: Proceedings of the 7th International Symposium on Software Engineering for Adaptive and Self-Managing Systems
June 2012
79 pages
ISBN:9781467317870

Sponsors

Publisher

IEEE Press

Publication History

Published: 04 June 2012

Check for updates

Author Tags

  1. adaptive security
  2. adaptive software
  3. assets
  4. smart grid

Qualifiers

  • Research-article

Conference

ICSE '12
Sponsor:

Acceptance Rates

Overall Acceptance Rate 17 of 31 submissions, 55%

Upcoming Conference

ICSE 2025

Contributors

Other Metrics

Bibliometrics & Citations

Bibliometrics

Article Metrics

  • Downloads (Last 12 months)5
  • Downloads (Last 6 weeks)0
Reflects downloads up to 14 Dec 2024

Other Metrics

Citations

Cited By

View all
  • (2012)Adaptive security and privacy in smart gridsProceedings of the First International Workshop on Software Engineering Challenges for the Smart Grid10.5555/2666759.2666769(46-49)Online publication date: 3-Jun-2012

View Options

Login options

View options

PDF

View or Download as a PDF file.

PDF

eReader

View online with eReader.

eReader

Media

Figures

Other

Tables

Share

Share

Share this Publication link

Share on social media