Measuring Stakeholders’ Perceptions of Cybersecurity for Renewable Energy Systems

Renewable energy systems need to be able to make frequent and rapid adjustments to address shifting solar and wind production. This requires increasingly sophisticated industrial control systems (ICS). But, that also increases the potential risks from cyber-attacks. Despite increasing attention to t...

Full description

Bibliographic Details
Main Authors: Lee, Yang, Strong, Diane, Madnick, Stuart E, Jalali, Seyed Mohammad Javad, Siegel, Michael D, Wang, Richard, Ang, Wee Horng, Deng, Vicki, Mistree, Dinsha
Other Authors: Massachusetts Institute of Technology. Department of Electrical Engineering and Computer Science
Format: Article
Published: Springer Nature America, Inc 2019
Online Access:http://hdl.handle.net/1721.1/120565
https://orcid.org/0000-0001-9240-2573
https://orcid.org/0000-0001-6769-2732
_version_ 1826217661341630464
author Lee, Yang
Strong, Diane
Madnick, Stuart E
Jalali, Seyed Mohammad Javad
Siegel, Michael D
Wang, Richard
Ang, Wee Horng
Deng, Vicki
Mistree, Dinsha
author2 Massachusetts Institute of Technology. Department of Electrical Engineering and Computer Science
author_facet Massachusetts Institute of Technology. Department of Electrical Engineering and Computer Science
Lee, Yang
Strong, Diane
Madnick, Stuart E
Jalali, Seyed Mohammad Javad
Siegel, Michael D
Wang, Richard
Ang, Wee Horng
Deng, Vicki
Mistree, Dinsha
author_sort Lee, Yang
collection MIT
description Renewable energy systems need to be able to make frequent and rapid adjustments to address shifting solar and wind production. This requires increasingly sophisticated industrial control systems (ICS). But, that also increases the potential risks from cyber-attacks. Despite increasing attention to technical aspects (i.e., software and hardware) of cybersecurity, many professionals and scholars pay little or no attention to its organizational aspects, particularly to stakeholders’ perceptions of the status of cybersecurity within organizations. Given that cybersecurity decisions and policies are mainly made based on stakeholders’ perceived needs and security views, it is critical to measure such perceptions. In this paper, we introduce a methodology for analyzing differences in perceptions of cybersecurity among organizational stakeholders. To measure these perceptions, we first designed House of Security (HoS) as a framework that includes eight constructs of security: confidentiality, integrity, availability, technology resources, financial resources, business strategy, policy and procedures, and culture. We then developed a survey instrument to analyze stakeholders’ perceptions based on these eight constructs. In a pilot study, we used the survey with people in various functional areas and levels of management in two energy and ICS organizations, and conducted a gap analysis to uncover differences in cybersecurity perceptions. This paper introduces the HoS and describes the survey instrument, as well as some of the preliminary findings. Keywords: Smart Grid; Functional Area; Operational Technology; Organizational Aspect; Renewable Energy Resource
first_indexed 2024-09-23T17:07:15Z
format Article
id mit-1721.1/120565
institution Massachusetts Institute of Technology
last_indexed 2024-09-23T17:07:15Z
publishDate 2019
publisher Springer Nature America, Inc
record_format dspace
spelling mit-1721.1/1205652022-10-03T10:32:42Z Measuring Stakeholders’ Perceptions of Cybersecurity for Renewable Energy Systems Lee, Yang Strong, Diane Madnick, Stuart E Jalali, Seyed Mohammad Javad Siegel, Michael D Wang, Richard Ang, Wee Horng Deng, Vicki Mistree, Dinsha Massachusetts Institute of Technology. Department of Electrical Engineering and Computer Science Madnick, Stuart E Jalali, Seyed Mohammad Javad Siegel, Michael D Wang, Richard Ang, Wee Horng Deng, Vicki Mistree, Dinsha Renewable energy systems need to be able to make frequent and rapid adjustments to address shifting solar and wind production. This requires increasingly sophisticated industrial control systems (ICS). But, that also increases the potential risks from cyber-attacks. Despite increasing attention to technical aspects (i.e., software and hardware) of cybersecurity, many professionals and scholars pay little or no attention to its organizational aspects, particularly to stakeholders’ perceptions of the status of cybersecurity within organizations. Given that cybersecurity decisions and policies are mainly made based on stakeholders’ perceived needs and security views, it is critical to measure such perceptions. In this paper, we introduce a methodology for analyzing differences in perceptions of cybersecurity among organizational stakeholders. To measure these perceptions, we first designed House of Security (HoS) as a framework that includes eight constructs of security: confidentiality, integrity, availability, technology resources, financial resources, business strategy, policy and procedures, and culture. We then developed a survey instrument to analyze stakeholders’ perceptions based on these eight constructs. In a pilot study, we used the survey with people in various functional areas and levels of management in two energy and ICS organizations, and conducted a gap analysis to uncover differences in cybersecurity perceptions. This paper introduces the HoS and describes the survey instrument, as well as some of the preliminary findings. Keywords: Smart Grid; Functional Area; Operational Technology; Organizational Aspect; Renewable Energy Resource 2019-02-27T16:39:48Z 2019-02-27T16:39:48Z 2017-01 2019-02-22T18:52:44Z Article http://purl.org/eprint/type/ConferencePaper 978-3-319-50946-4 978-3-319-50947-1 0302-9743 1611-3349 http://hdl.handle.net/1721.1/120565 Madnick, Stuart et al. “Measuring Stakeholders’ Perceptions of Cybersecurity for Renewable Energy Systems.” Lecture Notes in Computer Science (2017): 67–77 © 2017 Springer International Publishing AG https://orcid.org/0000-0001-9240-2573 https://orcid.org/0000-0001-6769-2732 http://dx.doi.org/10.1007/978-3-319-50947-1_7 DARE 2016: Data Analytics for Renewable Energy Integration Creative Commons Attribution-Noncommercial-Share Alike http://creativecommons.org/licenses/by-nc-sa/4.0/ application/pdf Springer Nature America, Inc Other repository
spellingShingle Lee, Yang
Strong, Diane
Madnick, Stuart E
Jalali, Seyed Mohammad Javad
Siegel, Michael D
Wang, Richard
Ang, Wee Horng
Deng, Vicki
Mistree, Dinsha
Measuring Stakeholders’ Perceptions of Cybersecurity for Renewable Energy Systems
title Measuring Stakeholders’ Perceptions of Cybersecurity for Renewable Energy Systems
title_full Measuring Stakeholders’ Perceptions of Cybersecurity for Renewable Energy Systems
title_fullStr Measuring Stakeholders’ Perceptions of Cybersecurity for Renewable Energy Systems
title_full_unstemmed Measuring Stakeholders’ Perceptions of Cybersecurity for Renewable Energy Systems
title_short Measuring Stakeholders’ Perceptions of Cybersecurity for Renewable Energy Systems
title_sort measuring stakeholders perceptions of cybersecurity for renewable energy systems
url http://hdl.handle.net/1721.1/120565
https://orcid.org/0000-0001-9240-2573
https://orcid.org/0000-0001-6769-2732
work_keys_str_mv AT leeyang measuringstakeholdersperceptionsofcybersecurityforrenewableenergysystems
AT strongdiane measuringstakeholdersperceptionsofcybersecurityforrenewableenergysystems
AT madnickstuarte measuringstakeholdersperceptionsofcybersecurityforrenewableenergysystems
AT jalaliseyedmohammadjavad measuringstakeholdersperceptionsofcybersecurityforrenewableenergysystems
AT siegelmichaeld measuringstakeholdersperceptionsofcybersecurityforrenewableenergysystems
AT wangrichard measuringstakeholdersperceptionsofcybersecurityforrenewableenergysystems
AT angweehorng measuringstakeholdersperceptionsofcybersecurityforrenewableenergysystems
AT dengvicki measuringstakeholdersperceptionsofcybersecurityforrenewableenergysystems
AT mistreedinsha measuringstakeholdersperceptionsofcybersecurityforrenewableenergysystems