000048403 001__ 48403 000048403 005__ 20210121114517.0 000048403 0247_ $$2doi$$a10.1093/comjnl/bxu096 000048403 0248_ $$2sideral$$a89940 000048403 037__ $$aART-2015-89940 000048403 041__ $$aeng 000048403 100__ $$0(orcid)0000-0001-7982-0359$$aRodríguez, Ricardo$$uUniversidad de Zaragoza 000048403 245__ $$aModelling Security of Critical Infrastructures: A Survivability Assessment 000048403 260__ $$c2015 000048403 5060_ $$aAccess copy available to the general public$$fUnrestricted 000048403 5203_ $$aCritical infrastructures, usually designed to handle disruptions caused by human errors or random acts of nature, define assets whose normal operation must be guaranteed to maintain its essential services for human daily living. Malicious intended attacks to these targets need to be considered during system design. To face these situations, defence plans must be developed in advance. In this paper, we present a Unified Modelling Language profile, named SecAM, that enables the modelling and security specification for critical infrastructures during the early phases (requirements, design) of system development life cycle. SecAM enables security assessment, through survivability analysis, of different security solutions before system deployment. As a case study, we evaluate the survivability of the Saudi Arabia crude-oil network under two different attack scenarios. The stochastic analysis, carried out with Generalized Stochastic Petri nets, quantitatively estimates the minimization of attack damages on the crude-oil network. 000048403 536__ $$9info:eu-repo/grantAgreement/ES/MINECO/TIN2011-24932 000048403 540__ $$9info:eu-repo/semantics/openAccess$$aby-nc-nd$$uhttp://creativecommons.org/licenses/by-nc-nd/3.0/es/ 000048403 590__ $$a1.0$$b2015 000048403 591__ $$aCOMPUTER SCIENCE, HARDWARE & ARCHITECTURE$$b27 / 51 = 0.529$$c2015$$dQ3$$eT2 000048403 591__ $$aCOMPUTER SCIENCE, THEORY & METHODS$$b53 / 105 = 0.505$$c2015$$dQ3$$eT2 000048403 591__ $$aCOMPUTER SCIENCE, SOFTWARE ENGINEERING$$b53 / 106 = 0.5$$c2015$$dQ2$$eT2 000048403 591__ $$aCOMPUTER SCIENCE, INFORMATION SYSTEMS$$b85 / 143 = 0.594$$c2015$$dQ3$$eT2 000048403 592__ $$a0.338$$b2015 000048403 593__ $$aComputer Science (miscellaneous)$$c2015$$dQ2 000048403 655_4 $$ainfo:eu-repo/semantics/article$$vinfo:eu-repo/semantics/acceptedVersion 000048403 700__ $$0(orcid)0000-0002-8917-6584$$aMerseguer, José$$uUniversidad de Zaragoza 000048403 700__ $$0(orcid)0000-0002-2605-6243$$aBernardi, Simona 000048403 7102_ $$15007$$2570$$aUniversidad de Zaragoza$$bDpto. Informát.Ingenie.Sistms.$$cÁrea Lenguajes y Sistemas Inf. 000048403 773__ $$g58, 10 (2015), 2313-2327$$pComput. j.$$tCOMPUTER JOURNAL$$x0010-4620 000048403 8564_ $$s816437$$uhttps://zaguan.unizar.es/record/48403/files/texto_completo.pdf$$yPostprint 000048403 8564_ $$s108192$$uhttps://zaguan.unizar.es/record/48403/files/texto_completo.jpg?subformat=icon$$xicon$$yPostprint 000048403 909CO $$ooai:zaguan.unizar.es:48403$$particulos$$pdriver 000048403 951__ $$a2021-01-21-11:00:38 000048403 980__ $$aARTICLE