security and safety assurance in industrial iot

13
Security and Safety Assurance in Industrial IoT ALIOT Kick-of-Meeting, Stockholm, KTH, December 14, 2016 Vladimir Sklyar National Aerospace University “KhAI”, Kharkiv, Ukraine Computer Systems and Networks Department

Upload: vladimir-sklyar

Post on 09-Apr-2017

46 views

Category:

Internet


0 download

TRANSCRIPT

Page 1: Security and Safety Assurance in Industrial IoT

Security and Safety Assurance in Industrial IoT

ALIOT Kick-of-Meeting, Stockholm, KTH, December 14, 2016

Vladimir Sklyar

National Aerospace University “KhAI”, Kharkiv, Ukraine

Computer Systems and Networks Department

Page 2: Security and Safety Assurance in Industrial IoT

Vladimir Sklyar

[email protected] Skype: vladimir_v_sklyar

• Professor of Computer Systems and

Networks Department – since 2013

• Technical Director of Company Radiy –

2011-2015

• Consultancy support in licensing and

certification project of Company Radiy –

since 2016

• Expertise area: Project Management,

Quality Assurance, Verification & Validation,

Business Development, Research &

Development, Teaching & Training

IEC expert,

Subcommittee 45A

"Instrumentation,

control and electrical

systems of nuclear

facilities" – since 2009

Page 3: Security and Safety Assurance in Industrial IoT

3 ALIOT KOM, Stockholm, KTH, December 14, 2016

Page 4: Security and Safety Assurance in Industrial IoT

4 ALIOT KOM, Stockholm, KTH, December 14, 2016

Page 5: Security and Safety Assurance in Industrial IoT

5 ALIOT KOM, Stockholm, KTH, December 14, 2016

Page 6: Security and Safety Assurance in Industrial IoT

6

• IICS are faster Industrial Control Systems (ICS = SCADA + DCS)

than IT systems

• IICS interacts with a physical world, so operation degradation

(including ICS security compromise) entails people health and

environmental damage

• IICS are different from IT systems from the points of view

performance, reliability and availability, risk management (injury and

environmental release), components (hardware, software, operating

systems, protocols), life time

• ICS Security Levels (SL) and Safety Integrity Level (SIL) concepts

are stated in industrial standards

• IICS (Industrial IoT) architecture should be a hybrid of IoT and ICS

architectures

• Humane Resource challenge: engineers with ICS – IoT inter domain

knowledge are highly requested to design and maintain IICS

Industrial Internet Control Systems (IICS) – Industrial IoT

ALIOT KOM, Stockholm, Ks TH, December 14, 2016

Page 7: Security and Safety Assurance in Industrial IoT

7 ALIOT KOM, Stockholm, KTH, December 14, 2016

ICS vs IoT: How to transform

Reference Architecture?

Page 8: Security and Safety Assurance in Industrial IoT

• Aristotle, “Rhetoric”: A B

• Stephen Toulmin (1922-2007)

• Tim Kelly, “Arguing Safety”

PhD Thesis, 1998

Safety and Security Assurance Case: History of Argument-based approach

8 ALIOT KOM, Stockholm, KTH, December 14, 2016

Page 9: Security and Safety Assurance in Industrial IoT

9 ALIOT KOM, Stockholm, KTH, December 14, 2016

Page 10: Security and Safety Assurance in Industrial IoT

10 ALIOT KOM, Stockholm, KTH, December 14, 2016

Harmonization of safety and security requirements

Page 11: Security and Safety Assurance in Industrial IoT

11 ALIOT KOM, Stockholm, KTH, December 14, 2016

Quality Management System

Page 12: Security and Safety Assurance in Industrial IoT

12 ALIOT KOM, Stockholm, KTH, December 14, 2016

Testbench to measure power consumption of IoT Device Layer

Arduino

Leonardo

board

USB cable

with cute

5V wire

Hall Effect

Sensor

Laptop Bread

board

Support for

USB cable

Page 13: Security and Safety Assurance in Industrial IoT

Thank you for your

attention!

[email protected]

Skype:

vladimir_v_sklyar

IoT safety and security

challenges overcoming

on the base of

assurance traditions in

critical infrastructures

and systems