close

What Is Truth to Power?

dedicated to bridging the gaps between governance and practice, technology and business, regulation and control, risk management and real market pressures, and your own knowledge and the knowledge of your peers.

built to create a common pool of knowledge—one big brain—that lets you work more efficiently, build technology and business practices more effectively, and endure audits more effortlessly.

a neutral hub through which you can reach many valuable information nodes, resource collections, and organizations that are helping people like you already, but in fractured ways.

against the idea that auditors, analysts, and consultancies can control information simply through their ability to collect and distill it. T2P's goal is to unlock the vast body of knowledge, insight, and conventional wisdom that we all have, make it freely available to you, and help you digest and interpret it—without undue cost, bias, or hype.

Top Panel
WHAT IS T2P?
Top Panel

Security Metrics for Process Control Systems

Issuer Full Name
Sandia National Laboratories
Issued
15 September 2007
Country:
Type
  • Free/open
Meta Description
T2P Ruleshub resource reference: Security Metrics for Process Control Systems (Sandia)
This document describes the foundations of metrics, discusses application of these metrics to control system environments, introduces a metrics taxonomy, and suggests usage of metrics to achieve operational excellence.

The security metrics work package began as part of the overall National SCADA Test Bed Program to address the applicability of security metrics to control system and operational environments. One of the four fundamental goals delineated within the Roadmap to Secure Control Systems in the Energy Sector (2005) is the development of the capability to measure and assess security posture.

The metrics team responsible for this report was tasked to develop an approach to security metrics as they pertain to control systems, including development of a metrics taxonomy and guidelines for using metrics. The resulting approach, as documented in this paper, is targeted at the organizational level for an audience of asset owners and control systems management.
Rate this rule
0 vote
Favored:
0