{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T11:30:58Z","timestamp":1764588658758,"version":"3.43.0"},"publisher-location":"Cham","reference-count":26,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032006325","type":"print"},{"value":"9783032006332","type":"electronic"}],"license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025]]},"DOI":"10.1007\/978-3-032-00633-2_17","type":"book-chapter","created":{"date-parts":[[2025,8,8]],"date-time":"2025-08-08T10:15:23Z","timestamp":1754648123000},"page":"286-304","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["A Role Taxonomy in\u00a0Security-Safety Incident Response"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0009-0003-2865-2115","authenticated-orcid":false,"given":"Vahiny","family":"Gnanasekaran","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-2660-6537","authenticated-orcid":false,"given":"Raphael","family":"Neudert","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0083-5860","authenticated-orcid":false,"given":"Poul Einar","family":"Heegaard","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1338-9003","authenticated-orcid":false,"given":"G\u00fcnther","family":"Pernul","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,8,9]]},"reference":[{"key":"17_CR1","doi-asserted-by":"publisher","unstructured":"Aarland, M.: Digital supply chain roles in the power industry. In: IFIP Advances in Information and Communication Technology, pp. 185\u2013199. Springer, Switzerland (2024). https:\/\/doi.org\/10.1007\/978-3-031-64037-7_12","DOI":"10.1007\/978-3-031-64037-7_12"},{"key":"17_CR2","doi-asserted-by":"publisher","unstructured":"Baumer, T., Grill, J., Adan, J., Pernul, G.: A trust and reputation system for examining compliance with access control. In: Proceedings of the 19th International Conference on Availability, Reliability and Security. ARES 2024. Association for Computing Machinery, New York (2024). https:\/\/doi.org\/10.1145\/3664476.3670883","DOI":"10.1145\/3664476.3670883"},{"issue":"3","key":"17_CR3","doi-asserted-by":"publisher","first-page":"1705","DOI":"10.1109\/COMST.2023.3264680","volume":"25","author":"M Cook","year":"2023","unstructured":"Cook, M., Marnerides, A., Johnson, C., Pezaros, D.: A survey on industrial control system digital forensics: challenges, advances and future directions. IEEE Commun. Surv. Tutor. 25(3), 1705\u20131747 (2023). https:\/\/doi.org\/10.1109\/COMST.2023.3264680","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"17_CR4","unstructured":"CWA 18024:2023: Emergency management - Incident situational reporting for critical infrastructures. Workshop agreement, CEN\/WS IPCI (2023)"},{"key":"17_CR5","unstructured":"CWA 18024:2023: Structuring an emergency response plan for crisis management stakeholders. Workshop agreement, CEN\/WS ERP (2023)"},{"key":"17_CR6","doi-asserted-by":"publisher","first-page":"85315","DOI":"10.1109\/ACCESS.2023.3303205","volume":"11","author":"F Djebbar","year":"2023","unstructured":"Djebbar, F., Nordstr\u00f6m, K.: A comparative analysis of industrial cybersecurity standards. IEEE Access 11, 85315\u201385332 (2023). https:\/\/doi.org\/10.1109\/ACCESS.2023.3303205","journal-title":"IEEE Access"},{"key":"17_CR7","unstructured":"EU: Regulation 2019\/881 (2019)"},{"key":"17_CR8","unstructured":"EU: Directive 2024\/2847 (2024)"},{"key":"17_CR9","unstructured":"Forum of Incident Response and Security Teams: Computer Security Incident Response Team (CSIRT) Services Framework Version 2.1 (2019)"},{"key":"17_CR10","unstructured":"Forum of Incident Response and Security Teams: Product Security Incident Response Team (PSIRT) Services Framework Version 1.1 (2020)"},{"key":"17_CR11","doi-asserted-by":"publisher","unstructured":"Groll, S., Fuchs, L., Pernul, G.: Separation of duty in information security. ACM Comput. Surv. 57(7) (2025). https:\/\/doi.org\/10.1145\/3715959","DOI":"10.1145\/3715959"},{"key":"17_CR12","unstructured":"ISA\/IEC 62443: Industrial communication networks - Network and system security. Tech. rep., International Electrotechnical Commission (2023)"},{"key":"17_CR13","unstructured":"ISO 11320:2011: Nuclear criticality safety\u2014Emergency preparedness and response. Standard, International Organization for Standardization (Sep 2011)"},{"key":"17_CR14","unstructured":"ISO 15544:2024: Oil and gas industries\u2014Offshore production installations \u2014 Requirements and guidelines for emergency response. Standard, International Organization for Standardization (2024)"},{"key":"17_CR15","unstructured":"ISO 22320:2018: Security and resilience\u2014Emergency management\u2014Guidelines for incident management. Standard, International Organization for Standardization (2018)"},{"key":"17_CR16","unstructured":"ISO\/IEC 27001:2022: Information security, cybersecurity and privacy protection \u2014 Information security management systems\u2014Requirements. Tech. rep., International Electrotechnical Commission (2023)"},{"key":"17_CR17","unstructured":"ISO\/IEC 27035:2023: Information technology - Information security incident management - Part 1: Principles and process. Standard, International Electrotechnical Commission (2023)"},{"key":"17_CR18","unstructured":"Maj, M., Reijers, R., Stikvoort, D.: Good practice guide for incident management. Tech. rep, European network and information security agency (ENISA) (2010)"},{"key":"17_CR19","doi-asserted-by":"crossref","unstructured":"National Institute of Standards and Technology: Computer Security Incident Handling Guide. Tech. rep., U.S. Department of Commerce (2012). https:\/\/doi.org\/10.6028\/NIST.SP.800-61r2","DOI":"10.6028\/NIST.SP.800-61r2"},{"key":"17_CR20","doi-asserted-by":"crossref","unstructured":"National Institute of Standards and Technology: Guide to Operational Technology (OT) Security. Tech. rep., U.S. Department of Commerce (2023). https:\/\/doi.org\/10.6028\/NIST.SP.800-82r3.ipd","DOI":"10.6028\/NIST.SP.800-82r3.ipd"},{"key":"17_CR21","doi-asserted-by":"publisher","unstructured":"Break-Glass. Springer, Wiesbaden (2014). https:\/\/doi.org\/10.1007\/978-3-658-07365-7","DOI":"10.1007\/978-3-658-07365-7"},{"key":"17_CR22","doi-asserted-by":"publisher","unstructured":"Sandhu, R.S.: Role-based access control. In: Advances in Computers, pp. 237\u2013286. Elsevier (1998). https:\/\/doi.org\/10.1016\/s0065-2458(08)60206-5","DOI":"10.1016\/s0065-2458(08)60206-5"},{"key":"17_CR23","doi-asserted-by":"publisher","unstructured":"Sreeramagiri, P., Andrews, G., Greene, A.K., Balasubramanian, G.: Analyzing security risks in cyber-physical manufacturing systems with actor\u2013network theory. Smart Sustain. Manuf. Syst. 6(1), 110\u2013121 (2022). https:\/\/doi.org\/10.1520\/ssms20210042","DOI":"10.1520\/ssms20210042"},{"key":"17_CR24","doi-asserted-by":"publisher","unstructured":"Staves, A., Anderson, T., Balderstone, H., Green, B., Gouglidis, A., Hutchison, D.: A cyber incident response and recovery framework to support operators of industrial control systems. Int. J. Crit. Infrastruct. Protect. 37(2021), 100505 (2022). https:\/\/doi.org\/10.1016\/j.ijcip.2021.100505","DOI":"10.1016\/j.ijcip.2021.100505"},{"key":"17_CR25","doi-asserted-by":"publisher","unstructured":"Wang, W., Sadjadi, S.M., Rishe, N.: A survey of major cybersecurity compliance frameworks. In: 2024 IEEE 10th Conference on Big Data Security on Cloud (BigDataSecurity), pp. 23\u201334 (2024). https:\/\/doi.org\/10.1109\/BigDataSecurity62737.2024.00013","DOI":"10.1109\/BigDataSecurity62737.2024.00013"},{"issue":"3","key":"17_CR26","doi-asserted-by":"publisher","first-page":"1232","DOI":"10.1109\/TR.2020.3046768","volume":"70","author":"R Zhang","year":"2021","unstructured":"Zhang, R., Liu, G., Kang, H., Wang, Q., Tian, Y., Wang, C.: Improved bell\u2013LaPadula model with break the glass mechanism. IEEE Trans. Reliab. 70(3), 1232\u20131241 (2021). https:\/\/doi.org\/10.1109\/TR.2020.3046768","journal-title":"IEEE Trans. Reliab."}],"container-title":["Lecture Notes in Computer Science","Availability, Reliability and Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-00633-2_17","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,8]],"date-time":"2025-08-08T10:15:28Z","timestamp":1754648128000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-00633-2_17"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"ISBN":["9783032006325","9783032006332"],"references-count":26,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-00633-2_17","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025]]},"assertion":[{"value":"9 August 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ARES","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Availability, Reliability and Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Ghent","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Belgium","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"11 August 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"14 August 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"20","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"ares-12025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/2025.ares-conference.eu","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}