Risk assessment objectives
The paramount objective of conducting a cybersecurity risk assessment in an ICS environment, especially related to safety critical components such as SISs, is to gain a comprehensive understanding of potential security risks lurking within the system. Achieving this objective is reliant on several key outcomes.
The following table breaks down the main objectives of an ICS cyber risk assessment:
Objective |
Description |
Identify vulnerabilities |
This involves reviewing secure network design and architecture, operation, and maintenance of safety systems to identify potential weaknesses. This involves identifying any elements of the SIS that are susceptible to cyber threats. |
Secure network architecture |
|
Effectively manage risks |
The assessment should... |