UCL Discovery
UCL home » Library Services » Electronic resources » UCL Discovery

Design Considerations for Building Credible Security Testbeds: Perspectives from Industrial Control System Use Cases

Ani, UD; Watson, JM; Green, B; Craggs, B; Nurse, J; (2021) Design Considerations for Building Credible Security Testbeds: Perspectives from Industrial Control System Use Cases. Journal of Cyber Security Technology , 5 (2) pp. 71-119. 10.1080/23742917.2020.1843822. Green open access

[thumbnail of Credibility Paper_JCST_Format_editable_file_Accepted.pdf]
Preview
Text
Credibility Paper_JCST_Format_editable_file_Accepted.pdf - Accepted Version

Download (789kB) | Preview

Abstract

This paper presents a mapping framework for design factors and an implementation process for building credible Industrial Control Systems (ICS) security testbeds. The security and resilience of ICSs has become a critical concern to operators and governments following widely publicised cyber security events. The inability to apply conventional Information Technology security practice to ICSs further compounds challenges in adequately securing critical systems. To overcome these challenges, and do so without impacting live environments, testbeds are widely used for the exploration, development, and evaluation of security controls. However, how a testbed is designed and its attributes, can directly impact not only its viability but also its credibility. Combining systematic and thematic analysis, and the mapping of identified ICS security testbed design attributes, we propose a novel relationship map of credibility-supporting design factors (and their associated attributes) and a process implementation flow structure for ICS security testbeds. The framework and implementation process highlight the significance of demonstrating some design factors such as user/experimenter expertise, clearly defined testbed design objectives, simulation implementation approach, covered architectural components, core structural and functional characteristics covered, and evaluations to enhance confidence, trustworthiness and acceptance of ICS security testbeds as credible. These can streamline testbed requirement definition, improve design consistency and quality while reducing implementation costs.

Type: Article
Title: Design Considerations for Building Credible Security Testbeds: Perspectives from Industrial Control System Use Cases
Open access status: An open access version is available from UCL Discovery
DOI: 10.1080/23742917.2020.1843822
Publisher version: https://doi.org/10.1080/23742917.2020.1843822
Language: English
Additional information: This version is the author accepted manuscript. For information on re-use, please refer to the publisher’s terms and conditions.
Keywords: ICS testbeds, security simulations, security modelling, model credibility, cyber security simulations
UCL classification: UCL
UCL > Provost and Vice Provost Offices > UCL BEAMS
UCL > Provost and Vice Provost Offices > UCL BEAMS > Faculty of Engineering Science
UCL > Provost and Vice Provost Offices > UCL BEAMS > Faculty of Engineering Science > Engineering Science Faculty Office
UCL > Provost and Vice Provost Offices > UCL BEAMS > Faculty of Engineering Science > STEaPP
URI: https://discovery.ucl.ac.uk/id/eprint/10118058
Downloads since deposit
202Downloads
Download activity - last month
Download activity - last 12 months
Downloads by country - last 12 months

Archive Staff Only

View Item View Item