TY - JOUR
T1 - A Cybersecurity Insurance Model for Power System Reliability Considering Optimal Defense Resource Allocation
AU - Lau, Pikkin
AU - Wei, Wei
AU - Wang, Lingfeng
AU - Liu, Zhaoxi
AU - Ten, Chee Wooi
N1 - Funding Information:
Manuscript received November 17, 2019; revised February 7, 2020 and March 22, 2020; accepted April 16, 2020. Date of publication May 6, 2020; date of current version August 21, 2020. This work was supported by the U.S. National Science Foundation under Award ECCS1739485 and Award ECCS1739422. Paper no. TSG-01738-2019. (Corresponding author: Lingfeng Wang.) Pikkin Lau, Lingfeng Wang, and Zhaoxi Liu are with the Department of Electrical Engineering and Computer Science, University of Wisconsin–Milwaukee, Milwaukee, WI 53211 USA (e-mail: [email protected]).
Funding Information:
This work was supported by the U.S. National Science Foundation under Award ECCS1739485 and Award ECCS1739422.
Publisher Copyright:
© 2010-2012 IEEE.
PY - 2020/9
Y1 - 2020/9
N2 - With the increasing application of Information and Communication Technologies (ICTs), cyberattacks have become more prevalent against Cyber-Physical Systems (CPSs) such as the modern power grids. Various methods have been proposed to model the cybersecurity threats, but so far limited studies have been focused on the defensive strategies subject to the limited security budget. In this paper, the power supply reliability is evaluated considering the strategic allocation of defense resources. Specifically, the optimal mixed strategies are formulated by the Stackelberg Security Game (SSG) to allocate the defense resources on multiple targets subject to cyberattacks. The cyberattacks against the intrusion-tolerant Supervisory Control and Data Acquisition (SCADA) system are mathematically modeled by Semi-Markov Process (SMP) kernel. The intrusion tolerance capability of the SCADA system provides buffered residence time before the substation failure to enhance the network robustness against cyberattacks. Case studies of the cyberattack scenarios are carried out to demonstrate the intrusion tolerance capability. Depending on the defense resource allocation scheme, the intrusion-tolerant SCADA system possesses varying degrees of self-healing capability to restore to the good state and prevent the substations from failure. If more defense resources are invested on the substations, the intrusion tolerant capability can be further enhanced for protecting the substations. Finally, the actuarial insurance principle is designed to estimate transmission companies' individual premiums considering correlated cybersecurity risks. The proposed insurance premium principle is designed to provide incentive for investments on enhancing the intrusion tolerance capability, which is verified by the results of case studies.
AB - With the increasing application of Information and Communication Technologies (ICTs), cyberattacks have become more prevalent against Cyber-Physical Systems (CPSs) such as the modern power grids. Various methods have been proposed to model the cybersecurity threats, but so far limited studies have been focused on the defensive strategies subject to the limited security budget. In this paper, the power supply reliability is evaluated considering the strategic allocation of defense resources. Specifically, the optimal mixed strategies are formulated by the Stackelberg Security Game (SSG) to allocate the defense resources on multiple targets subject to cyberattacks. The cyberattacks against the intrusion-tolerant Supervisory Control and Data Acquisition (SCADA) system are mathematically modeled by Semi-Markov Process (SMP) kernel. The intrusion tolerance capability of the SCADA system provides buffered residence time before the substation failure to enhance the network robustness against cyberattacks. Case studies of the cyberattack scenarios are carried out to demonstrate the intrusion tolerance capability. Depending on the defense resource allocation scheme, the intrusion-tolerant SCADA system possesses varying degrees of self-healing capability to restore to the good state and prevent the substations from failure. If more defense resources are invested on the substations, the intrusion tolerant capability can be further enhanced for protecting the substations. Finally, the actuarial insurance principle is designed to estimate transmission companies' individual premiums considering correlated cybersecurity risks. The proposed insurance premium principle is designed to provide incentive for investments on enhancing the intrusion tolerance capability, which is verified by the results of case studies.
KW - cyber risk management
KW - cyber-insurance
KW - Cybersecurity
KW - game theory
KW - power system reliability
UR - http://www.scopus.com/inward/record.url?scp=85090122938&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=85090122938&partnerID=8YFLogxK
U2 - 10.1109/TSG.2020.2992782
DO - 10.1109/TSG.2020.2992782
M3 - Article
AN - SCOPUS:85090122938
SN - 1949-3053
VL - 11
SP - 4403
EP - 4414
JO - IEEE Transactions on Smart Grid
JF - IEEE Transactions on Smart Grid
IS - 5
M1 - 9087864
ER -