Abstract:
This paper presents a comprehensive cybersecurity model for process control systems. A formal method for classifying assets according to cybersecurity levels using the mapping system in the form of a graph and using clustering methods is proposed. A method for synthesizing the cybersecurity architecture of systems is proposed. The applicability of these methods for hierarchical systems is considered. An example of the synthesis of the security architecture for the subsystem of the NPP automated process control system is considered in accordance with the cyber security policy RG5.71. The Appendix describes the security graph in the take-grant model.