eBook - ePub
Critical Infrastructure Risk Assessment
The Definitive Threat Identification and Threat Reduction Handbook
Ernie Hayden
This is a test
Share book
- 363 pages
- English
- ePUB (mobile friendly)
- Available on iOS & Android
eBook - ePub
Critical Infrastructure Risk Assessment
The Definitive Threat Identification and Threat Reduction Handbook
Ernie Hayden
Book details
Book preview
Table of contents
Citations
About This Book
As a manager or engineer have you ever been assigned a task to perform a risk assessment of one of your facilities or plant systems? What if you are an insurance inspector or corporate auditor? Do you know how to prepare yourself for the inspection, decided what to look for, and how to write your report?
This is a handbook for junior and senior personnel alike on what constitutes critical infrastructure and risk and offers guides to the risk assessor on preparation, performance, and documentation of a risk assessment of a complex facility. This is a definite "must read" for consultants, plant managers, corporate risk managers, junior and senior engineers, and university students before they jump into their first technical assignment.
Frequently asked questions
How do I cancel my subscription?
Can/how do I download books?
At the moment all of our mobile-responsive ePub books are available to download via the app. Most of our PDFs are also available to download and we're working on making the final remaining ones downloadable now. Learn more here.
What is the difference between the pricing plans?
Both plans give you full access to the library and all of Perlego’s features. The only differences are the price and subscription period: With the annual plan you’ll save around 30% compared to 12 months on the monthly plan.
What is Perlego?
We are an online textbook subscription service, where you can get access to an entire online library for less than the price of a single book per month. With over 1 million books across 1000+ topics, we’ve got you covered! Learn more here.
Do you support text-to-speech?
Look out for the read-aloud symbol on your next book to see if you can listen to it. The read-aloud tool reads text aloud for you, highlighting the text as it is being read. You can pause it, speed it up and slow it down. Learn more here.
Is Critical Infrastructure Risk Assessment an online PDF/ePUB?
Yes, you can access Critical Infrastructure Risk Assessment by Ernie Hayden in PDF and/or ePUB format, as well as other popular books in Business & Infrastructure. We have over one million books available in our catalogue for you to explore.
Information
PART I
FOUNDATIONS
Before you can begin to conduct a risk assessment you need to understand a few fundamentals. This section helps you get prepared before you pick up your pen and camera to walk down the site.
Part I includes essential information on the following:
- What constitutes Critical Infrastructure and how is it defined in the US and internationally?
- What is Risk? What are the elements that make up this concept?
- What is a Risk Assessment? What are the different types of risk assessments and their constituent parts?
You should find this an interesting read which will offer the basic information necessary to jump into the risk assessment phase.
Chapter 1
Just What is
Critical Infrastructure?
Infrastructure sector is all about building assets for the country. It is part of nation building.1
- Gautam Adani
- Gautam Adani
This chapter brings you the fundamentals of what constitutes critical infrastructure and the associated government policies from the US and internationally. Since this book will discuss approaches and techniques when performing risk assessments of critical infrastructure, it is important for the executive and the assessment team to understand what critical infrastructure constitutes as a concept, and the history of it becoming a policy idea for government focus. Then, with this knowledge, the assessment process can be more holistic and complete with better understanding of a) what is critical infrastructure, b) what sectors does my company/institution rely upon, and c) how are the sectors interdependent and what is their effect on my organization’s performance and production?
1.1 What is Critical Infrastructure?
So, just what is critical infrastructure?
We are surrounded by it. We use it every day. It keeps our factories running, schools operating, and governments governing.
Infrastructure is very important for the function of a nation as well as an industrial sector.
One of my favorite quotes about infrastructure is from an article in The Atlantic where the author, Ian Bogost observed2:
Infrastructure is everything you don’t think about. The roads you drive on. The rigs and refineries that turn fossil fuel into the gas that makes your car go. The electricity that powers the streetlights and lamps that guide your way. All these technologies vanish into the oblivion of normalcy.
To give you a sense of how large this challenge is, the 2003 National Strategy for the Physical Protection of Critical Infrastructure and Key Assets offered a list of the different sectors and the scope of every way an attacker can penetrate your perimeter digitally and physically. Such a concept of the ways to break into an organization is often referred to as the attack surface.
This updated list is provided in the table below and, upon study, can be not only impressive but overwhelming to national policy makers and defenders.3
Table 1.1 Critical Infrastructure Attack Surface
Agriculture & Food |
|
Banking & Finance |
|
Chemical Industry & Hazardous Materials |
|
Commercial Assets |
|
Dams |
|
Defense Industrial Base |
|
Emergency Services |
|
Energy |
|
Government Facilities |
|
Natural Monuments & Icons |
|
Nuclear Power Plants |
|
Postal & Shipping |
|
Public Health |
|
Telecommunications |
|
Transportation |
|
Water & Wastewater |
|
The United States has been a leader in defining critical infrastructure, what it constitutes, and protection policies. However, this is not just an American problem. A CIPedia15 article identified 40 countries that have put forth a definition or at least a list of what constitutes critical national infrastructure. I will provide an in-depth review of the United States and a few other countries and their approach to critical infrastructure definition and protection policy in the discussion which follows.
1.2 Critical Infrastructure Conceptual Development — United States
Infrastructure can be defined as:
Basic facilities, services and installations needed for the functioning of a community or society.
One of the earliest policy reviews identified in my research is from the United States Congressional Budget Office (CBO). The report, Public Works Infrastructure: Policy Considerations for the 1980’s, was initiated at the request of the Senate Committee on the Budget in order to “...assess the needs of seven infrastructure systems and the costs of meeting those needs.” (Bodde, page iii).
In this document, the concept of “critical” infrastructure is not discussed; however, the report identifies the following infrastructure verticals considered for this review.
- Highways ...