Abstract
Critical infrastructure protection requires the evaluation of the criticality of infrastructures and the prioritization of critical assets. However, criticality analysis is not yet standardized. This paper examines the relation between risk and criticality. It analyzes the similarities and differences in terms of scope, aims, impact, threats and vulnerabilities; and proposes a generic risk-based criticality analysis methodology. The paper also presents a detailed list of impact criteria for assessing the criticality level of infrastructures. Emphasis is placed on impact types that are society-centric and/or sector-centric, unlike traditional risk analysis methodologies that mainly consider the organization-centric impact. © IFIP International Federation for Information Processing 2009.
Author supplied keywords
Cite
CITATION STYLE
Theoharidou, M., Kotzanikolaou, P., & Gritza-Lis, D. (2009). Risk-based criticality analysis. In IFIP Advances in Information and Communication Technology (Vol. 311, pp. 35–49). https://doi.org/10.1007/978-3-642-04798-5_3
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.