Blockchain-based model for tracking compliance with security requirements

التفاصيل البيبلوغرافية
العنوان: Blockchain-based model for tracking compliance with security requirements
المؤلفون: Jelena Marjanovic, Nikola Dalcekovic, Goran Sladic
المصدر: Computer Science and Information Systems. 20:359-380
بيانات النشر: National Library of Serbia, 2023.
سنة النشر: 2023
مصطلحات موضوعية: General Computer Science
الوصف: The increasing threat landscape in Industrial Control Systems (ICS) brings different risk profiles with comprehensive impacts on society and safety. The complexity of cybersecurity risk assessment increases with a variety of third-party software components that comprise a modern ICS supply chain. A central issue in software supply chain security is the evaluation whether the secure development lifecycle process (SDL) is being methodologically and continuously practiced by all vendors. In this paper, we investigate the possibility of using a decentralized, tamper-proof system that will provide trustworthy visibility of the SDL metrics over a certain period, to any authorized auditing party. Results of the research provide a model for creating a blockchain-based approach that allows inclusion of auditors through a consortium decision while responding to SDL use cases defined by this paper. The resulting blockchain architecture successfully responded to requirements mandated by the security management practice as defined by IEC 62443-4-1 standard.
تدمد: 2406-1018
1820-0214
URL الوصول: https://explore.openaire.eu/search/publication?articleId=doi_________::388018479c619705c3d27056ed436a8b
https://doi.org/10.2298/csis210923060m
حقوق: OPEN
رقم الأكسشن: edsair.doi...........388018479c619705c3d27056ed436a8b
قاعدة البيانات: OpenAIRE