Skip to main content
U.S. Department of Energy
Office of Scientific and Technical Information

Risk assessment for physical and cyber attacks on critical infrastructures.

Conference ·
OSTI ID:970302

Assessing the risk of malevolent attacks against large-scale critical infrastructures requires modifications to existing methodologies. Existing risk assessment methodologies consider physical security and cyber security separately. As such, they do not accurately model attacks that involve defeating both physical protection and cyber protection elements (e.g., hackers turning off alarm systems prior to forced entry). This paper presents a risk assessment methodology that accounts for both physical and cyber security. It also preserves the traditional security paradigm of detect, delay and respond, while accounting for the possibility that a facility may be able to recover from or mitigate the results of a successful attack before serious consequences occur. The methodology provides a means for ranking those assets most at risk from malevolent attacks. Because the methodology is automated the analyst can also play 'what if with mitigation measures to gain a better understanding of how to best expend resources towards securing the facilities. It is simple enough to be applied to large infrastructure facilities without developing highly complicated models. Finally, it is applicable to facilities with extensive security as well as those that are less well-protected.

Research Organization:
Sandia National Laboratories
Sponsoring Organization:
USDOE
DOE Contract Number:
AC04-94AL85000
OSTI ID:
970302
Report Number(s):
SAND2005-4964C
Country of Publication:
United States
Language:
English

Similar Records

Critical infrastructure systems of systems assessment methodology.
Technical Report · Sun Oct 01 00:00:00 EDT 2006 · OSTI ID:899076

Cyber Threats to Nuclear Infrastructures
Conference · Thu Jul 01 00:00:00 EDT 2010 · OSTI ID:986958

Requirements and Recommendations for a Physical Attack Characterization Framework
Technical Report · Sat Jul 01 00:00:00 EDT 2023 · OSTI ID:2229613