Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
A Methodology for Cybersecurity Risk Assessment – A Case-study in Railway
Luleå University of Technology, Department of Civil, Environmental and Natural Resources Engineering, Operation, Maintenance and Acoustics.ORCID iD: 0000-0003-0734-0959
Luleå University of Technology, Department of Civil, Environmental and Natural Resources Engineering, Operation, Maintenance and Acoustics.ORCID iD: 0000-0002-7438-1008
Luleå University of Technology, Department of Civil, Environmental and Natural Resources Engineering, Operation, Maintenance and Acoustics.ORCID iD: 0000-0002-1938-0985
Luleå University of Technology, Department of Civil, Environmental and Natural Resources Engineering, Operation, Maintenance and Acoustics.ORCID iD: 0000-0002-0055-2740
2022 (English)In: International Journal of COMADEM, ISSN 1363-7681, Vol. 25, no 2, p. 5-12Article in journal (Refereed) Published
Abstract [en]

Digitalisation is changing the railway globally. One of the major concerns in digital transformation of the railway is the increased exposure to cyberattacks. The railway is vulnerable to these cyberattacks because the number of digital items and number of interfaces between digital and physical components in these systems keep growing. Increased number of digital items and interfaces require new methodologies, frameworks, models, concepts, and architectures to ensure the railway system’s resilience with respect to cybersecurity challenges, such as adoption and convergence of Information Technology (IT) and Operational Technology (OT) technology within the railway. This convergence has brought significant benefits in reliability, operational efficiency, capacity as well as improvements in passenger experience but also increases the vulnerability towards cyberattacks from individuals, organizations, and governments. This paper proposes a methodology on how to deals with OT security in the railway signalling using failure mode, effects and criticality analysis (FMECA) and ISA/IEC 62443 security risk assessment methodologies.

Place, publisher, year, edition, pages
COMADEM International, 2022. Vol. 25, no 2, p. 5-12
Keywords [en]
Operational security, ISA/IEC 62443, FMECA, railway, cyber threat, risk assessment
National Category
Computer Engineering Infrastructure Engineering
Research subject
Operation and Maintenance Engineering
Identifiers
URN: urn:nbn:se:ltu:diva-92981Scopus ID: 2-s2.0-85168770411OAI: oai:DiVA.org:ltu-92981DiVA, id: diva2:1695018
Funder
Luleå Railway Research Centre (JVTC)
Note

Validerad;2022;Nivå 1;2022-09-30 (hanlid)

Available from: 2022-09-12 Created: 2022-09-12 Last updated: 2023-09-28Bibliographically approved

Open Access in DiVA

No full text in DiVA

Other links

ScopusPublishers' fulltext

Authority records

Kour, RavdeepPatwardhan, AmitThaduri, AdithyaKarim, Ramin

Search in DiVA

By author/editor
Kour, RavdeepPatwardhan, AmitThaduri, AdithyaKarim, Ramin
By organisation
Operation, Maintenance and Acoustics
In the same journal
International Journal of COMADEM
Computer EngineeringInfrastructure Engineering

Search outside of DiVA

GoogleGoogle Scholar

urn-nbn

Altmetric score

urn-nbn
Total: 268 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf