IoT is undoubtedly considered the future of the Internet. Many sectors are moving towards the use of these devices to aid better monitoring, controlling of the surrounding environment, and manufacturing processes. The Industrial Internet of things is a sub-domain of IoT and serves as enablers of the industry. IIoT is providing valuable services to Industrial Control Systems such as logistics, manufacturing, healthcare, industrial surveillance, and others. Although IIoT service-offering to ICS is tempting, it comes with greater risk. ICS systems are protected by isolation and creating an air-gap to separate their network from the outside world. While IIoT by definition is a device that has connection ability. This creates multiple points of entry to a closed system. In this study, we examine the first automated risk assessment system designed specifically to deal with the automated risk assessment and defining potential threats associated with IT/OT convergence based on OCTAVE Allegro- ISO/IEC 27030 Frameworks.
翻译:物联网无疑被认为是互联网的未来。许多行业正朝着使用这些设备来辅助更有效地监控、控制周围环境和制造流程的方向发展。工业物联网是物联网的一个子领域,是工业的推动者。工业物联网为工业控制系统提供了宝贵的服务,例如物流、制造、医疗、工业监控等。尽管工业物联网向ICS提供服务颇具吸引力,但其也伴随着更大的风险。ICS系统通过隔离和创建空气隙来保护自身,以将其网络与外部世界分离。而工业物联网从定义上讲是一种具有连接能力的设备,这为封闭系统创造了多个入口点。在本研究中,我们探讨了首个专门设计用于处理基于OCTAVE Allegro-ISO/IEC 27030框架的IT/OT融合自动风险评估和定义潜在威胁的风险评估系统。