Fri Apr 8 06:51:39 PDT 2016

Overarching: Content: What content does the enterprise have and what are the consequences of protection failures?


Options:

Fill in the table by identifying relevant content types with examples and removing or replacing consequences identified.

Decision:

Identify each content type present and associate consequences associated with loss of integrity (I), availability (A), confidentiality (C), control over use (U), accountability (T), transparency (R), and custody (S) for each type:

For identified situations, associate content and failure modes that might produce identified consequences (and the consequence types) as a result of loss of integrity (I), availability (A), confidentiality (C), control over use (U), accountability (T), transparency (R), and Custody (S) and supply details of the basis for this conclusion.

Provide worst case financial valuation and/or quantities (initial and over time) of relevant items.

Situation Relevant content and failure mode(s) Identified LOW consequence type(s) and description(s) Identified MEDIUM consequence type(s) and description(s) Identified HIGH consequence type(s) and description(s)
No particular requirements for control or substantial value. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Takes limited time, effort, or money to generate or purchase. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Internally useful non-confidential customer, worker, or market data. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Potentially sensitive or identifying customer, worker, or market data - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Potentially sensitive credit card or credit-related data - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Internally important for limited parts of the enterprise. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Substantial loss of business or harm to brand if uncontrolled. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Interferes with contracts or upsets customers if uncontrolled. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Confidential or proprietary financial data. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Intellectual property like patent background and design data or Trade Secrets. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Medical treatment, dose, or devices controls that interact with humans. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Manufacturing processes controls. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Decision support for matters of life and death. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Sensitive aggregated in volume risky to major customers. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Major political or environmental implications. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Supervisory control and data acquisition (SCADA) infrastructure systems. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Legally protected confidential medical, privacy, or other data. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Subjects of protective orders. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
On legal hold pending disposition. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Reasonably anticipated subject of a law suit. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Legally mandated retention or disposition times. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Subject to industry-specific regulations. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Contractually mandated controls. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Standards required for treatment. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Contractual limitations on use. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Contractual limitations on sharing. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Contractual limitations on disposition. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Contract performance data. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Statements of work. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Content relevant to a law suit. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Government classified or restricted data. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Owned by a government. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Controlled with regard to import. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Controlled with regard to export. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Controlled with regard to transport. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Controlled with regard to some other requirement. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Required by government for reporting purposes. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Required for tracking controlled substances, devices, or artifacts. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Personally identifying information. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Local, State, or Federal identification numbers or information (e.g., SSN, drivers licenses) . - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Credit card information. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Biometric data. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Financial account information. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Medical or healthcare information (test results, fees, providers, etc.) - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Consumer habits and patterns. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Financial information about people or enterprises. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Associations between people or groups. - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Legal documents presumed trustworthy - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Historical documents presumed trustworthy - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Metadata associated with stored content - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Mechanisms used to link content to metadata - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Operational information used to support business functions - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Provenance information associated with content - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Information used to assert integrity of other content - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Information used to determine proper accessibility - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Archived data in authoritative repositories - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Planning information - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Mechanisms supporting use of obsolete content forms - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Chain of preservation or custody data - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Information provided for transparency - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
- - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
- - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
- - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
- - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
- - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
- - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
- - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
- - [IACUTRS] [Waste] Details [IACUTRS] [PR / Gross / Loss / Injury / Environment / Society] Details [IACUTRS] [Death / Environment / Society / Collapse / Dire] Details
Reasonably anticipated consequences of security failures

The key for the above table is as follows:

Key Description
Waste Wasted time and effort (inefficiency)
PR Substantial negative publicity.
Gross Acts viewed as gross negligence.
Losses Substantial enterprise value reduction.
Injury Serious bodily harm.
Environment Limited environmental damage.
Society Limited societal harm.
Death Loss of (human) life
Environment Serious environmental damage.
Society Serious societal damage
Collapse Enterprise Collapse.
Dire Other dire consequences.
Key for protection failures

Basis: Describe the basis for each claim or refer to external documentation. Add rows as necessary. At least the following areas should be considered in your analysis, even if many of them may not be placed in the table:
Processing rate or output quality is reduced {within / outside} of defined tolerance ranges.
Processing is stopped and has to be restarted and {no / some} equipment damage results.
Processing is stopped and cannot be restarted until {equipment / facility} is {repaired / replaced} resulting in {delay / loss / shutdown / etc.}.
Hazardous conditions arise during processing, producing undesired {internal / near-equipment / facility-wide / outside-of facility / regional / global} effects. [define area and effects]
Competitive advantage is lost or reduced (e.g., from leaked status or process details, corrupted content, etc.).
Leaked status or process details leads to {internal / external} exploitation for {illegal activities / harm to plant or facility / harm to infrastructure / harm to enterprise}.
Limited loss of control.
Substantial loss of business or harm to brand results.
Conditions interfere with contracts or upset customers.
Confidential or proprietary data leaked.
Intellectual property like patent background and design data leaked.
Medical treatment, dose, or device controls that interact with humans fail (in various ways).
Decision support mechanisms fail to provide proper assistance.
Systems (PLCs) fail to operate properly.
Systems (DCS) fail to {accurately depict sensory data / properly actuate}.
{internal / external} communications mechanisms fail to operate properly.
Other elements fail in other ways.
Critical infrastructure systems fail {causing effects / as a result of system failures}.
Legally protected confidential medical, privacy, or other data inadequately protected in the environment.
{Internal/External} information asks systems to operate in an {undesired/unsafe} mode.
Legal mandates inadequately carried out in the environment.
Legal {retention / disposition / holds} impact {operations / historians}.
Industry-specific regulations unable to be properly met or demonstrated.
Contractually mandated controls unable to be properly met or demonstrated.
Contractual limitations on {use / sharing / disposition} improperly fulfilled.
Contract performance data improperly {provided / applied}.
Government classified or restricted data improperly handled.
Controls with regard to {import / export / transport / some other requirement} not properly carried out.
Required {reporting / tracking / accountability} mechanisms not properly functioning.
Controlled {substances / devices / artifacts} inadequately controlled.
Personally identifying information not properly controlled.
Medical information (test results, fees, providers, etc.) not properly controlled.
Financial information about people or enterprises not properly controlled.
Archival information not demonstrably properly controlled.
Inability to produce output in usable form.
Inability to consume input to proper effect.
Inability to properly process content with proper results.
Loss of trust in the system or its services.


Basis:

Different mechanisms have different implications in different situations in terms of the consequences of protection failures.

Typical consequences identified include:

  • LOW: Wasted time and effort (inefficiency) and Losses reasonably covered by non-cyber insurance (e.g., shrinkage, minor accidents and injuries).
  • MEDIUM: Substantial negative publicity, Acts viewed as gross negligence, Substantial enterprise value reduction, Serious injury, Limited environmental damage or societal harm.
  • HIGH: Loss of life, Serious environmental or societal damage, Enterprise Collapse, Other dire consequences

For example, a temperature control system might have LOW consequences in a small automated photographic developing facility, a MEDIUM consequence in a food production facility (where redundant tests identify a "bad batch"), and HIGH consequences in a chemical plant where its failure causes a major explosion.

Typically, consequences resulting from information protection failures are associated with a loss of integrity (I), availability (A), confidentiality (C), control over use (U), accountability (T), transparency (R), and custody (S) in an information system, with the ultimate result leading to real-world effects through the impact of the failures on the control system.

Copyright(c) Fred Cohen, 1988-2015 - All Rights Reserved