Cybersecurity Baseline and Risk Mitigation for Open Data in IoT-Enabled Smart City Systems: A Case Study of the Hradec Kralove Region
Identifikátory výsledku
Kód výsledku v IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F62690094%3A18450%2F25%3A50022663" target="_blank" >RIV/62690094:18450/25:50022663 - isvavai.cz</a>
Výsledek na webu
<a href="https://www.mdpi.com/1424-8220/25/16/4966" target="_blank" >https://www.mdpi.com/1424-8220/25/16/4966</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.3390/s25164966" target="_blank" >10.3390/s25164966</a>
Alternativní jazyky
Jazyk výsledku
angličtina
Název v původním jazyce
Cybersecurity Baseline and Risk Mitigation for Open Data in IoT-Enabled Smart City Systems: A Case Study of the Hradec Kralove Region
Popis výsledku v původním jazyce
This paper explores cybersecurity risk modeling for open data in Smart City environments, with a specific case study focused on the Hradec Kralove Region. The goal is to establish a cybersecurity baseline through automated analysis using extended BPMN modeling, complemented by Business Impact Analysis (BIA). The approach identifies critical data flows and quantifies the impact of disruptions in terms of Recovery Time Objective (RTO), Maximum Tolerable Period of Disruption (MTPD), and Maximum Tolerable Data Loss (MTDL). A framework for automated risk mitigation selection is proposed. Results demonstrate the effectiveness of combining process mapping with security requirements to prioritize protections for Smart City data. As an example from the open data domain, the visualization-publishing process was found to tolerate an outage of up to one week, but required high confidentiality and integrity. The maximum tolerable data loss (MTDL) was set at 24 h, leading to the selection of measures such as encryption, access control, and regular backups. This structured methodology enhances data availability and integrity, supporting resilient urban digital infrastructure.
Název v anglickém jazyce
Cybersecurity Baseline and Risk Mitigation for Open Data in IoT-Enabled Smart City Systems: A Case Study of the Hradec Kralove Region
Popis výsledku anglicky
This paper explores cybersecurity risk modeling for open data in Smart City environments, with a specific case study focused on the Hradec Kralove Region. The goal is to establish a cybersecurity baseline through automated analysis using extended BPMN modeling, complemented by Business Impact Analysis (BIA). The approach identifies critical data flows and quantifies the impact of disruptions in terms of Recovery Time Objective (RTO), Maximum Tolerable Period of Disruption (MTPD), and Maximum Tolerable Data Loss (MTDL). A framework for automated risk mitigation selection is proposed. Results demonstrate the effectiveness of combining process mapping with security requirements to prioritize protections for Smart City data. As an example from the open data domain, the visualization-publishing process was found to tolerate an outage of up to one week, but required high confidentiality and integrity. The maximum tolerable data loss (MTDL) was set at 24 h, leading to the selection of measures such as encryption, access control, and regular backups. This structured methodology enhances data availability and integrity, supporting resilient urban digital infrastructure.
Klasifikace
Druh
J<sub>imp</sub> - Článek v periodiku v databázi Web of Science
CEP obor
—
OECD FORD obor
10201 - Computer sciences, information science, bioinformathics (hardware development to be 2.2, social aspect to be 5.8)
Návaznosti výsledku
Projekt
<a href="/cs/project/VJ02010016" target="_blank" >VJ02010016: Využití umělé inteligence pro zajištění kybernetické bezpečnosti Smart City</a><br>
Návaznosti
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)
Ostatní
Rok uplatnění
2025
Kód důvěrnosti údajů
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Údaje specifické pro druh výsledku
Název periodika
Sensors
ISSN
1424-8220
e-ISSN
1424-8220
Svazek periodika
25
Číslo periodika v rámci svazku
16
Stát vydavatele periodika
CH - Švýcarská konfederace
Počet stran výsledku
28
Strana od-do
"Article Number: 4966"
Kód UT WoS článku
001558375200001
EID výsledku v databázi Scopus
2-s2.0-105014274021