Ir directamente a la navegación principal Ir directamente a la búsqueda Ir directamente al contenido principal

Enhancing Digital Supply Chain Security Through Critical Infrastructure Protection Blueprints: A Review on Challenges, Reference Architectures and Software Bills of Material

  • Djibrilla Amadou Kountche*
  • , Meisam Gordan*
  • , Mona Soroudi
  • , Daniel McCrum
  • , Efstathios Zavvos
  • , Lorcan Connolly
  • , Sandra König
  • , Stefan Schauer
  • , Jose Carlos Carrasco
  • , Jocelyn Aubert
  • , Nicola Gregorio Durante
  • , Manh Dung Nguyen
  • , Marisa Escalante Martinez
  • , Zisis Palaskas
  • , Páraic Caroll
  • *Autor correspondiente de este trabajo

Producción científica: Capítulo del libro/informe/acta de congresoCapítulorevisión exhaustiva

Resumen

Critical Infrastructure Protection (CIP)Critical Infrastructure Protection (CIP) against cascading effects of cyber and physical threats involves several solutions (i.e., software) from CIP domains such as Risk Assessment and Management, Infrastructure InterdependenciesInterdependencies, Resilience Engineering, Data Analytics and Predictive Modelling, and Technological Innovations, e.g., Digital Twin. However, these solutions are often bespoke, limiting reuse, and are scattered across repositories and deliverables. Commercial solutions can be costly and come with licensing constraints and data restrictions. Furthermore, CIP software assets are subjected to supply chainSupply chain attacks. This chapter reviews the blueprint concept for reusing CIP assets and introduces zero trust architectures. This chapter also proposes a community-based approach to facilitate the description, adoption, and reuse of integrated CIP software by researchers and Critical Infrastructure (CI) operators. This approach is based on (i) the definition of reference architecturesReference architecture for CIP software; (ii) the provision of re-usable concrete implementations of these architectures; and (iii) the description of these implementations using TOSCATopology and Orchestration Specification for Cloud Applications (TOSCA) for their deployment and orchestration, considering security and quality of service policies. Overall, this chapter lays the groundwork for a blueprint repository including software, datasets, documentation, and TOSCA service templates, to support broader adoption and reuse of CIP tools.

Idioma originalInglés
Título de la publicación alojadaSignals and Communication Technology
EditorialSpringer Science and Business Media Deutschland GmbH
Páginas29-58
Número de páginas30
DOI
EstadoPublicada - 2026

Serie de la publicación

NombreSignals and Communication Technology
VolumenPart F1412
ISSN (versión impresa)1860-4862
ISSN (versión digital)1860-4870

ODS de las Naciones Unidas

Este resultado contribuye a los siguientes Objetivos de Desarrollo Sostenible

  1. ODS 9: Industria, innovación e infraestructura
    ODS 9: Industria, innovación e infraestructura

Huella

Profundice en los temas de investigación de 'Enhancing Digital Supply Chain Security Through Critical Infrastructure Protection Blueprints: A Review on Challenges, Reference Architectures and Software Bills of Material'. En conjunto forman una huella única.

Citar esto