Fuzzy Logic and Its Application in the Assessment of Information Security Risk of Industrial Internet of Things
Kerimkhulle S. Dildebayeva Z. Tokhmetov A. Amirova A. Tussupov J. Makhazhanova U. Adalbek A. Taberkhan R. Zakirova A. Salykbayeva A.
October 2023Multidisciplinary Digital Publishing Institute (MDPI)
Symmetry
2023#15Issue 10
This article addresses the issue of information security in the Industrial Internet of Things (IIoT) environment. Information security risk assessment in the IIoT is complicated by several factors: the complexity and heterogeneity of the system, the dynamic nature of the system, the distributed network infrastructure, the lack of standards and guidelines, and the increased consequences of security breaches. Given these factors, information security risk assessment in the IIoT requires a comprehensive approach adapted to the peculiarities and requirements of a particular system and industry. It is necessary to use specialized risk assessment methods and to take into account the context and peculiarities of the system. The method of information security risk assessment in the IIoT, based on the mathematical apparatus of fuzzy set theory, is proposed. This paper analyzes information security threats for IIoT systems, from which the most significant criteria are selected. The rules, based on which decisions are made, are formulated in the form of logical formulas containing input parameters. Three fuzzy inference systems are used: one to estimate the probability of threat realization, another to estimate the probable damage, and a final one to estimate the information security risk for the IIoT system. Based on the proposed method, examples of calculating the information security risk assessment in the IIoT environment are provided. The proposed scientific approach can serve as a foundation for creating expert decision support systems for designing IIoT systems.
fuzzy decision making , fuzzy logic application , IIoT , linguistic variables , risk , security , threat
Text of the article Перейти на текст статьи
Department of Information Systems, L.N. Gumilyov Eurasian National University, 2, Satpayev Street, Astana, 010008, Kazakhstan
Department of Economics and Business, International Engineering Technological University, 89/21, Al-Farabi Avenue, Almaty, 050060, Kazakhstan
Department of Supply Chain Management, LLP, 3, Satpayev Street, Tengizchevroil, Atyrau, 060001, Kazakhstan
Department of Information Systems
Department of Economics and Business
Department of Supply Chain Management
10 лет помогаем публиковать статьи Международный издатель
Книга Публикация научной статьи Волощук 2026 Book Publication of a scientific article 2026