Žiga Turk (Author), Muammer Semih Sonkor (Author), Robert Klinc (Author)

Abstract

Digitalisation of the construction industry is exposing it to cybersecurity risks. All phases of construction can be affected. Particularly vulnerable are information-intensive phases such as building design and building operation. Con-struction is among the last industries that are discovering its cybersecurity risks and can rely on frameworks developed for other contexts. In this paper, we evaluate the cybersecurity risks of the design phase of construction using the Cyber As-sessment Framework from the National Cybersecurity Centre (NCSC) of the UK. The goal of this study is twofold. First, to examine cybersecurity risks themselves, and second, to evaluate the applicability of the NCSC framework for construction to see if and how construction is specific. The analysis shows that the cybersecurity risks follow the information impact curve that has been motivating the introduction of Building Information Modelling (BIM). The framework is applicable but is weak in addressing the specifics of the construction industrial ecosystem, which involves a multitude of dynamically connected actors, their overlapping authorities, and conflicting motives. It is suggested that a specialized construction-related framework should be developed.

Keywords

gradbeništvo;načrtovanje;kibernetska varnost;informacijsko modeliranje gradenj;skupno podatkovno okolje;celostna izvedba projekta;construction;designing;cybersecurity;building information modelling;common data environment;integrated project delivery;

Data

Language: English
Year of publishing:
Typology: 1.01 - Original Scientific Article
Organization: UL FGG - Faculty of Civil and Geodetic Engineering
UDC: 004.9:624
COBISS: 107180547 Link will open in a new window
ISSN: 1392-3730
Views: 236
Downloads: 27
Average score: 0 (0 votes)
Metadata: JSON JSON-RDF JSON-LD TURTLE N-TRIPLES XML RDFA MICRODATA DC-XML DC-RDF RDF

Other data

Secondary language: Slovenian
Secondary abstract: Zaradi digitalizacije gradbeništva je to izpostavljeno tveganjem kibernetske varnosti. Prizadene lahko vse faze gradbeništva. Posebej ranljive so informacijsko intenzivne faze, kot sta projektiranje in obratovanje stavb. Gradbeništvo je med zadnjimi panogami, ki odkrivajo svoja kibernetsko-varnostna tveganja in se lahko zanašajo na okvire, razvite za druge kontekste. V tem prispevku ocenjujemo tveganja kibernetske varnosti v fazi projektiranja gradnje z uporabo okvira za ocenjevanje kibernetske varnosti, ki ga je pripravil Nacionalni center za kibernetsko varnost (NCSC) iz Združenega kraljestva. Cilj te študije je dvojen. Prvič, preučiti sama tveganja kibernetske varnosti, drugič pa oceniti uporabnost okvira NCSC za gradbeništvo, da bi ugotovili, ali je gradbeništvo specifično in kako. Analiza kaže, da tveganja kibernetske varnosti sledijo krivulji vpliva informacij, ki je bila povod za uvedbo informacijskega modeliranja gradenj (BIM). Okvir je uporaben, vendar je šibek pri obravnavi posebnosti industrijskega ekosistema gradbeništva, ki vključuje številne dinamično povezane akterje, njihove prekrivajoče se pristojnosti in nasprotujoče si motive. Predlagano je, da se razvije specializiran okvir, povezan z gradbeništvom.
Secondary keywords: gradbeništvo;načrtovanje;kibernetska varnost;informacijsko modeliranje gradenj;skupno podatkovno okolje;celostna izvedba projekta;
Type (COBISS): Article
Pages: str. 349–364
Volume: ǂVol. ǂ28
Issue: ǂšt. ǂ5
Chronology: 2022
DOI: 10.3846/jcem.2022.16682
ID: 15504055