Leveraging Digital Twins and SIEM Integration for Incident Response in OT Environments

  1. Adei Arias
  2. Cristobal Arellano
  3. Aitor Urbieta
  4. Urko Zurutuza
Buch:
IX Jornadas Nacionales de Investigación en Ciberseguridad

Verlag: Ángel J. Varela Vaca ; Antonia M. Reina Quintero ; Rafael Ceballos Guerrero

ISBN: 978-84-09-62140-8

Datum der Publikation: 2024

Seiten: 294-301

Kongress: Jornadas Nacionales de Investigación en Ciberseguridad (9. 2024. null)

Art: Konferenz-Beitrag

eBiltegia. Repositorio digital de Mondragon Unibertsitatea: lock_openOpen Access Handle

Ziele für nachhaltige Entwicklung

info

SDG-Ranking mithilfe des Modells für künstliche Intelligenz Aurora SDG.

Zusammenfassung

The Industrial Internet of Things (IIoT) has digitally transformed industrial processes albeit at the expense of increasing exposure to new security threats. System Information and Event Management (SIEM) systems, typically designed for Information Technology (IT), may struggle with the high data volume, specialized security needs, and real-time response requirements of IIoT environments. Digital Twins (DT), virtual replicas of physical devices, offer a solution to these challenges. By integrating SIEM with DT, incident response can be automated in Operational Technology (OT) environments. This integration enhances real-time threat detection, response coordination and post-incident tasks to ensure the security and continuity of industrial operations. A use case and prototype validate the effectiveness of this approach and highlight its potential to strengthen OT security in the face of evolving threats.

Informationen zur Finanzierung

This work has been financed by The European Commission through the Horizon Europe program under the IDUNN project (grant agreement number 101021911). It was also partially supported by the Department of Economic Development, Sustainability and Environment of the Basque Government under the ELKARTEK 2023 program, project BEACON (with registration number KK-2023-00085).