AIR4ICS: Agile Incident Response For Industrial Control Systems
Summary
The aim of this research is to establish and evaluate how agile methods and techniques will be integrated into traditional incident response processes to yield a value-focused and dynamic approach that embeds incident response in the overall business. The research will take into account changing risks and impacts during the course of an attack and maximise business utility by deriving value directly from the business processes the ICS is supporting. The objectives of this research are to:
- Deliver an Agile Incident Response framework (AIR4ICS) that is tailored to the particular challenges of Industrial Control Systems to address the cyber physical nature and impacts of IR.
- Apply and adapt agile management methods to the context of incident response to bring the benefits of a cross-functional team together with a continuously adaptive and value driven approach to incident response.
- Evaluate AIR4ICS using an experiential learning platform to conduct three war-gaming exercises, bringing together RITICS partners, industry and CNI operators with direct value to beneficiaries.
- Provide exposure and integration for RITICS and aligned industry research through the coordinated integration of research outputs in the war-gaming exercises.