Repository logo
 
Publication

A forensics and compliance auditing framework for critical infrastructure protection

dc.contributor.authorHenriques, João
dc.contributor.authorCaldeira, Filipe
dc.contributor.authorCruz, Tiago
dc.contributor.authorSimões, Paulo
dc.date.accessioned2024-01-15T11:28:24Z
dc.date.available2024-01-15T11:28:24Z
dc.date.issued2023-06
dc.date.updated2024-01-14T15:14:26Z
dc.description.abstractContemporary societies are increasingly dependent on products and services provided by Critical Infrastructure (CI) such as power plants, energy distribution networks, transportation systems and manufacturing facilities. Due to their nature, size and complexity, such CIs are often supported by Industrial Automation and Control Systems (IACS), which are in charge of managing assets and controlling everyday operations. As these IACS become larger and more complex, encompassing a growing number of processes and interconnected monitoring and actuating devices, the attack surface of the underlying CIs increases. This situation calls for new strategies to improve Critical Infrastructure Protection (CIP) frameworks, based on evolved approaches for data analytics, able to gather insights from the CI. In this paper, we propose an Intrusion and Anomaly Detection System (IADS) framework that adopts forensics and compliance auditing capabilities at its core to improve CIP. Adopted forensics techniques help to address, for instance, post-incident analysis and investigation, while the support of continuous auditing processes simplifies compliance management and service quality assessment. More specifically, after discussing the rationale for such a framework, this paper presents a formal description of the proposed components and functions and discusses how the framework can be implemented using a cloud-native approach, to address both functional and non-functional requirements. An experimental analysis of the framework scalability is also provided.pt_PT
dc.description.versioninfo:eu-repo/semantics/publishedVersionpt_PT
dc.identifier.citationHenriques, J., Caldeira, F., Cruz, T., & Simões, P. (2023). A forensics and compliance auditing framework for critical infrastructure protection. International Journal of Critical Infrastructure Protection, 42, 100613. https://doi.org/10.1016/j.ijcip.2023.100613pt_PT
dc.identifier.doi10.1016/j.ijcip.2023.100613pt_PT
dc.identifier.slugcv-prod-3287129
dc.identifier.urihttp://hdl.handle.net/10400.19/8175
dc.language.isoengpt_PT
dc.peerreviewedyespt_PT
dc.subjectForensicspt_PT
dc.subjectCompliance auditingpt_PT
dc.subjectCritical infrastructure protectionpt_PT
dc.subjectCybersecuritypt_PT
dc.subjectBig datapt_PT
dc.subjectData analyticspt_PT
dc.subjectDistributed computingpt_PT
dc.titleA forensics and compliance auditing framework for critical infrastructure protectionpt_PT
dc.typejournal article
dspace.entity.typePublication
oaire.citation.startPage100613pt_PT
oaire.citation.titleInternational Journal of Critical Infrastructure Protectionpt_PT
oaire.citation.volume42pt_PT
person.familyNameCaldeira
person.givenNameFilipe
person.identifierlXPmBvYAAAAJ
person.identifier.ciencia-idCB11-8109-AB1D
person.identifier.orcid0000-0001-7558-2330
person.identifier.scopus-author-id36023210300
rcaap.cv.cienciaidCB11-8109-AB1D | Filipe Caldeira
rcaap.rightsopenAccesspt_PT
rcaap.typearticlept_PT
relation.isAuthorOfPublicatione845705e-5b0b-4f70-9c53-c472ffd768d1
relation.isAuthorOfPublication.latestForDiscoverye845705e-5b0b-4f70-9c53-c472ffd768d1

Files

Original bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
1-s2.0-S1874548223000264-main.pdf
Size:
1.32 MB
Format:
Adobe Portable Document Format
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.82 KB
Format:
Item-specific license agreed upon to submission
Description: