CN112053079A - Power monitoring system supply chain safety monitoring and early warning system and method - Google Patents

Power monitoring system supply chain safety monitoring and early warning system and method Download PDF

Info

Publication number
CN112053079A
CN112053079A CN202010965081.4A CN202010965081A CN112053079A CN 112053079 A CN112053079 A CN 112053079A CN 202010965081 A CN202010965081 A CN 202010965081A CN 112053079 A CN112053079 A CN 112053079A
Authority
CN
China
Prior art keywords
data
supply chain
risk
module
safety
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN202010965081.4A
Other languages
Chinese (zh)
Other versions
CN112053079B (en
Inventor
蒋诚智
刘婷婷
汪木兰
黄传峰
金卫健
徐浩
黄琦炜
解春艳
田华
卢冰原
夏勇
谢玉民
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Nanjing Institute of Technology
Original Assignee
Nanjing Institute of Technology
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Nanjing Institute of Technology filed Critical Nanjing Institute of Technology
Priority to CN202010965081.4A priority Critical patent/CN112053079B/en
Publication of CN112053079A publication Critical patent/CN112053079A/en
Application granted granted Critical
Publication of CN112053079B publication Critical patent/CN112053079B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q10/00Administration; Management
    • G06Q10/06Resources, workflows, human or project management; Enterprise or organisation planning; Enterprise or organisation modelling
    • G06Q10/063Operations research, analysis or management
    • G06Q10/0635Risk analysis of enterprise or organisation activities
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q50/00Information and communication technology [ICT] specially adapted for implementation of business processes of specific business sectors, e.g. utilities or tourism
    • G06Q50/06Energy or water supply

Landscapes

  • Business, Economics & Management (AREA)
  • Human Resources & Organizations (AREA)
  • Engineering & Computer Science (AREA)
  • Economics (AREA)
  • Strategic Management (AREA)
  • Theoretical Computer Science (AREA)
  • Entrepreneurship & Innovation (AREA)
  • Health & Medical Sciences (AREA)
  • Marketing (AREA)
  • General Physics & Mathematics (AREA)
  • General Business, Economics & Management (AREA)
  • Tourism & Hospitality (AREA)
  • Physics & Mathematics (AREA)
  • Public Health (AREA)
  • Primary Health Care (AREA)
  • Water Supply & Treatment (AREA)
  • Development Economics (AREA)
  • Educational Administration (AREA)
  • General Health & Medical Sciences (AREA)
  • Game Theory and Decision Science (AREA)
  • Operations Research (AREA)
  • Quality & Reliability (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

The invention relates to a power monitoring system supply chain safety monitoring and early warning system and a method, wherein a data acquisition module is respectively connected with a data processing module and a data storage module. The data processing module is connected with the data storage module. The data storage module is respectively connected with the supply chain political security risk assessment module, the supplier security risk assessment module, the software and hardware security risk assessment module and the supply chain comprehensive security risk assessment module. The supply chain comprehensive safety risk assessment module is respectively connected with the supply chain political safety risk assessment module, the supplier safety risk assessment module, the software and hardware safety risk assessment module and the supply chain safety risk early warning and disposal module. The invention can carry out multi-dimensional safety risk assessment, monitoring and early warning on the supply chain of the power monitoring system, can effectively identify the potential safety risk of the supply chain in time, and improves the risk monitoring, early warning and management capability of the supply chain of the power monitoring system.

Description

Power monitoring system supply chain safety monitoring and early warning system and method
Technical Field
The invention belongs to the technical field of power network safety, and particularly relates to a power monitoring system supply chain safety monitoring and early warning system and method.
Background
The power monitoring system refers to a business system and intelligent equipment based on computer and network technology for monitoring and controlling the power production and supply process, and a communication and data network used as a basic support. As a key infrastructure in China, the network security of the power monitoring system becomes an important component of national network security. With the advance of the strategy of intelligent power grids and energy internet in China, the safety problem of the power network is more and more prominent, and the safety problem caused by the strategy also more and more deeply influences the safety, stability and economic operation of the power system.
Supply chain security has attracted worldwide attention as an important component of power network security. The united states has raised supply chain security to the level of national security. China also pays great attention to the safety of the supply chain, and the safety management of the supply chain is enhanced through network safety legislation and other ways. According to the inventor, the safety of the supply chain of the current power monitoring system is mainly managed by means of manual statistics, and the main technical capacity defects of the current power monitoring system are shown in the following aspects: (1) the supply chain security mainly focuses on related software bugs which are disclosed, the supply chain security risk assessment dimension is single, and potential security risks of suppliers and subordinate countries and regions of the suppliers cannot be identified; (2) supply chain security risk identification generally lacks a risk timely early warning mechanism after security threats have spread more widely, and risk handling responses are slower.
Disclosure of Invention
The invention aims to solve the technical problem of providing a power monitoring system supply chain safety monitoring and early warning system and method aiming at the defects of the prior art.
The technical scheme adopted by the invention is as follows:
a power monitoring system supply chain safety monitoring and early warning system comprises:
the data acquisition module is used for acquiring original data;
the data processing module is used for carrying out data cleaning, word segmentation, part of speech tagging and word weight setting processing on the original data; the processed data is used for carrying out data analysis on a subsequent supply chain political security risk evaluation module, a supplier security risk evaluation module and a software and hardware security risk evaluation module;
the supply chain political safety risk assessment module is used for assessing bilateral relation between the affiliated country and region of the power monitoring system supplier and China and acquiring supply chain political safety risk data;
the supplier safety risk evaluation module is used for evaluating potential safety risks of the suppliers of the power monitoring system and acquiring supplier safety risk data;
the software and hardware security risk assessment module is used for assessing potential bugs of the software and hardware of the electric power monitoring system, assessing possible consequences caused by the bugs and acquiring software and hardware security risk data;
the supply chain comprehensive security risk assessment module is used for assessing the supply chain comprehensive security risk on the basis of the supply chain political security risk data, the supplier security risk data, the software and hardware security risk data and the original data to obtain the supply chain comprehensive security risk data;
the supply chain safety risk early warning and disposal module is used for pushing supply chain safety risk early warning and disposal information to an asset attribution unit of the power monitoring system and carrying out risk tracking management;
the data storage module is used for storing the original data and the data processed by the other modules;
the data acquisition module is respectively connected with the data processing module and the data storage module; the data processing module is connected with the data storage module; the data storage module is respectively connected with the supply chain political security risk assessment module, the supplier security risk assessment module, the software and hardware security risk assessment module and the supply chain comprehensive security risk assessment module; the supply chain comprehensive safety risk assessment module is respectively connected with the supply chain political safety risk assessment module, the supplier safety risk assessment module, the software and hardware safety risk assessment module and the supply chain safety risk early warning and handling module.
Further, the data acquisition module comprises:
the Internet data acquisition submodule is used for acquiring asset related data published by the Internet;
the private power network data acquisition submodule is used for acquiring asset information of the power monitoring system;
and the internal intelligence data acquisition submodule is used for acquiring the related data of the non-public assets acquired through the intelligence network.
Further, the air conditioner is provided with a fan,
the related data of the assets published by the internet comprises supplier background data related to the assets of the power monitoring system, information of main commercial activities and political activities of the suppliers, statement information related to China and published by main leaders in the subordinate countries and regions of the suppliers, information of a main country information security vulnerability library and product vulnerability information published by the suppliers;
the asset information of the power monitoring system comprises hardware configuration data, software configuration data, and performance and after-sales service data of software and hardware suppliers in the system.
Further, the air conditioner is provided with a fan,
the supply chain political safety risk data comprises a supply chain political safety risk coefficient, a risk level, a risk category and a risk content description;
the vendor security risk data comprises a vendor security risk coefficient, a risk level, a risk category and a risk content description;
the software and hardware security risk data comprise software and hardware vulnerability risk coefficients, risk levels, risk categories and risk content descriptions.
Further, the air conditioner is provided with a fan,
the supply chain integrated safety risk data comprise supply chain integrated safety risk components, risk coefficients of all components, risk weights, risk levels, risk categories and risk content descriptions, and supply chain integrated safety risk coefficients, risk levels, risk categories and risk content descriptions.
Further, the air conditioner is provided with a fan,
the supply chain security risk early warning and disposal information comprises supply chain integrated security risk data and a matched supply chain risk disposal plan.
A safety monitoring and early warning method for a power monitoring system supply chain comprises the following steps:
step 1, a data acquisition module acquires data and stores original data into a data storage module;
step 1.1, the electric power private network data acquisition submodule acquires asset information of an electric power monitoring system through an electric power private network, wherein the asset information comprises hardware configuration data, software configuration data, and software and hardware supplier performing and after-sale service data in the system;
step 1.2, the internet data acquisition submodule acquires the related public release data of the assets through the internet according to the asset information of the power monitoring system;
step 1.3, the internal information data acquisition submodule acquires non-public data related to assets through an internal information network according to asset information of the power monitoring system;
step 2, the data processing module processes the original data acquired by the data acquisition module;
step 2.1, the data processing module reads all original data from the data storage module, and stores the original data into the data storage module after cleaning the data;
step 2.2, the data processing module reads asset information of the power monitoring system, performs correlation processing and stores the correlation information into the data storage module;
step 2.3, the data processing module reads the Chinese-related speech information, the supplier main commercial activity information and the political activity information which are issued by the main leaders of the subordinate countries and the regions of the suppliers, performs word segmentation, part of speech tagging and word weight setting, and stores the processed data in the data storage module;
step 3, the supply chain political safety risk assessment module reads the processed asset information of the power monitoring system and the statement information which is related to China and is issued by main leaders of the affiliated countries and the areas of the relevant suppliers of the assets from the data storage module, performs emotion analysis, assesses the bilateral relation between the affiliated countries and the areas of the relevant suppliers and China, calculates the supply chain political safety risk coefficient, and stores the supply chain political safety risk data into the data storage module;
step 4, the supplier safety risk assessment module reads the processed asset information of the power monitoring system, the background data of related suppliers, the commercial activities and the political activities of the suppliers from the data storage module, assesses the potential safety risks of the related suppliers, calculates the safety risk coefficient of the suppliers and stores the safety risk data of the suppliers into the data storage module;
step 5, the software and hardware safety risk assessment module reads the processed asset information of the power monitoring system, the information of the main national information safety leak library and the product leak information released by a supplier from the data storage module, extracts the leak information related to the asset, assesses the possible consequences caused by the leak, calculates the software and hardware safety risk coefficient and stores the software and hardware safety risk data into the data storage module;
step 6, the supply chain comprehensive safety risk assessment module reads supply chain political safety risk data, supplier safety risk data, software and hardware safety risk data and non-public internal information data from the data storage module, performs data association analysis, calculates a supply chain comprehensive safety risk coefficient and a risk level by combining expert judgment, and stores the supply chain comprehensive safety risk data in the data storage module;
step 7, the supply chain safety risk early warning and handling module reads the supply chain comprehensive safety risk data, the supply chain political safety risk data, the supplier safety risk data and the software and hardware safety risk data from the data storage module to carry out risk early warning and risk handling;
7.1, the supply chain safety risk early warning and handling module carries out supply chain safety risk early warning prompt on the asset affiliation unit of the related power monitoring system;
7.2, matching a supply chain risk processing plan by the supply chain safety risk early warning and handling module according to the read supply chain safety risk related data, and pushing the matched plan to an asset affiliation unit of the power monitoring system;
and 7.3, setting a time limit by the supply chain safety risk early warning and handling module to require an asset affiliation unit of the power monitoring system to submit supply chain risk measures and tracking and managing supply chain risks.
The invention has the beneficial effects that:
1) according to the invention, the supply chain multi-dimensional safety risk is comprehensively evaluated by evaluating the supply chain political safety risk, the supplier safety risk, the software and hardware safety risk and the supply chain comprehensive safety risk, the potential safety risks of the power monitoring system supplier, the subordinate countries and regions thereof and the system software and hardware are effectively identified, and the safety monitoring and management capability of the supply chain of the power monitoring system is improved.
2) The system can timely identify the supply chain safety risk and push the supply chain safety risk to the asset affiliation unit of the electric power monitoring system for risk early warning by acquiring data in real time and evaluating the supply chain safety risk. Meanwhile, the system pushes the matched risk disposal plan and manages the risk disposal process, so that the safety early warning management capability and the risk disposal response speed of the supply chain of the power monitoring system can be effectively improved.
Drawings
FIG. 1 is a block diagram of the components of a power monitoring system supply chain safety monitoring and early warning system according to the present invention;
fig. 2 is a flowchart of a supply chain safety monitoring and early warning method of the power monitoring system according to the present invention.
Detailed Description
The power monitoring system supply chain safety monitoring and early warning system and method of the present invention will be further described in detail with reference to the accompanying drawings and specific embodiments.
As shown in fig. 1, a supply chain safety monitoring and early warning system for a power monitoring system includes:
the data acquisition module is used for acquiring original data;
the data processing module is used for carrying out data cleaning, word segmentation, part of speech tagging and word weight setting processing on the original data; the processed data is used for carrying out data analysis on a subsequent supply chain political security risk evaluation module, a supplier security risk evaluation module and a software and hardware security risk evaluation module;
the system comprises a supply chain political security risk evaluation module, a power monitoring system and a risk classification module, wherein the supply chain political security risk evaluation module is used for evaluating the bilateral relation between the affiliated country and region of a power monitoring system supplier and China and acquiring supply chain political security risk data, and the supply chain political security risk data comprises a supply chain political security risk coefficient, a risk level, a risk category and a risk content description;
the supplier safety risk evaluation module is used for evaluating potential safety risks of the suppliers of the electric power monitoring systems and acquiring supplier safety risk data, wherein the supplier safety risk data comprise supplier safety risk coefficients, risk levels, risk categories and risk content descriptions;
the software and hardware security risk assessment module is used for assessing potential bugs of the software and hardware of the electric power monitoring system, assessing possible consequences caused by the bugs, and acquiring software and hardware security risk data, wherein the software and hardware security risk data comprise software and hardware bug risk coefficients, risk levels, risk categories and risk content descriptions;
the supply chain comprehensive safety risk assessment module is used for assessing the supply chain comprehensive safety risk on the basis of supply chain political safety risk data, supplier safety risk data, software and hardware safety risk data and original data (internal information network data) and acquiring the supply chain comprehensive safety risk data, wherein the supply chain comprehensive safety risk data comprises supply chain comprehensive safety risk components, risk coefficients of all components, risk weights, risk levels, risk types and risk content descriptions, and supply chain comprehensive safety risk coefficients, risk levels, risk types and risk content descriptions;
the supply chain safety risk early warning and disposal module is used for pushing supply chain safety risk early warning and disposal information to an asset attribution unit of the power monitoring system and carrying out risk tracking management; the supply chain safety risk early warning and disposing information comprises supply chain comprehensive safety risk data and a matched supply chain risk disposing plan;
and the data storage module is used for storing the original data and the data processed by the other modules.
The data acquisition module is respectively connected with the data processing module and the data storage module; the data processing module is connected with the data storage module; the data storage module is respectively connected with the supply chain political security risk assessment module, the supplier security risk assessment module, the software and hardware security risk assessment module and the supply chain comprehensive security risk assessment module; the supply chain comprehensive safety risk assessment module is respectively connected with the supply chain political safety risk assessment module, the supplier safety risk assessment module, the software and hardware safety risk assessment module and the supply chain safety risk early warning and disposal module.
Specifically, the data acquisition module includes:
the system comprises an Internet data acquisition submodule and a data processing submodule, wherein the Internet data acquisition submodule is used for acquiring asset related data published by the Internet, and the asset related data published by the Internet comprises supplier background data related to assets of a power monitoring system, main commercial activity and political activity information of a supplier, statement information related to China and published by main leaders in the subordinate countries and regions of the supplier, main country information safety leak library information and product leak information published by the supplier;
the private power network data acquisition submodule is used for acquiring asset information of a power monitoring system, wherein the asset information of the power monitoring system comprises hardware configuration data, software configuration data and after-sale service data of software and hardware suppliers in the system;
and the internal intelligence data acquisition submodule is used for acquiring the related data of the non-public assets acquired through the intelligence network.
As shown in fig. 2, a method for monitoring and warning supply chain safety of a power monitoring system includes the following steps:
step 1, a data acquisition module acquires data and stores original data into a data storage module;
step 1.1, the electric power private network data acquisition submodule acquires asset information of an electric power monitoring system through an electric power private network, wherein the asset information comprises hardware configuration data, software configuration data, and software and hardware supplier performing and after-sale service data in the system;
step 1.2, the internet data acquisition submodule acquires the related public release data of the assets through the internet according to the asset information of the power monitoring system;
and step 1.3, the internal information data acquisition submodule acquires non-public data related to the assets through an internal information network according to the asset information of the power monitoring system.
Step 2, the data processing module processes the original data acquired by the data acquisition module;
step 2.1, the data processing module reads all original data from the data storage module, and stores the original data into the data storage module after cleaning the data;
step 2.2, the data processing module reads asset information of the power monitoring system, performs correlation processing and stores the correlation information into the data storage module;
and 2.3, reading the Chinese-related speech information, the supplier main commercial activity information and the political activity information, which are issued by the main leaders of the country and the region of the supplier, by the data processing module, performing word segmentation, part of speech tagging and word weight setting, and storing the processed data in the data storage module.
And 3, reading the processed asset information of the power monitoring system and the statement information which is related to China and is issued by main leaders of the affiliated countries and the areas of the associated suppliers of the assets from the data storage module by the supply chain political safety risk assessment module, carrying out sentiment analysis, assessing the bilateral relation between the affiliated countries and the areas of the associated suppliers and China, calculating a supply chain political safety risk coefficient, and storing the supply chain political safety risk data in the data storage module.
And 4, the supplier safety risk assessment module reads the processed asset information of the power monitoring system, the background data of the relevant suppliers, the commercial activity information and the political activity information of the suppliers from the data storage module, assesses the potential safety risk of the relevant suppliers, calculates the safety risk coefficient of the suppliers and stores the safety risk data of the suppliers into the data storage module.
And 5, reading the processed asset information of the power monitoring system, the information of the main national information security vulnerability library and the product vulnerability information released by a supplier from the data storage module by the software and hardware security risk assessment module, extracting vulnerability information related to the asset, assessing consequences possibly caused by the vulnerability, calculating software and hardware security risk coefficients, and storing software and hardware security risk data into the data storage module.
And 6, reading the supply chain political safety risk data, the supplier safety risk data, the software and hardware safety risk data and the non-public internal information data from the data storage module by the supply chain comprehensive safety risk assessment module, carrying out data association analysis, calculating a supply chain comprehensive safety risk coefficient and a risk level by combining expert judgment, and storing the supply chain comprehensive safety risk data into the data storage module.
Step 7, the supply chain safety risk early warning and handling module reads the supply chain comprehensive safety risk data, the supply chain political safety risk data, the supplier safety risk data and the software and hardware safety risk data from the data storage module to carry out risk early warning and risk handling;
7.1, the supply chain safety risk early warning and handling module carries out supply chain safety risk early warning prompt on the asset affiliation unit of the related power monitoring system;
7.2, matching a supply chain risk processing plan by the supply chain safety risk early warning and handling module according to the read supply chain safety risk related data, and pushing the matched plan to an asset affiliation unit of the power monitoring system;
and 7.3, setting a time limit by the supply chain safety risk early warning and handling module to require an asset affiliation unit of the power monitoring system to submit supply chain risk measures and tracking and managing supply chain risks.
The above description is only for the specific embodiments of the present invention, but the scope of the present invention is not limited thereto, and any alternative or alternative method that can be easily conceived by those skilled in the art within the technical scope of the present invention should be covered within the scope of the present invention.

Claims (7)

1. The utility model provides a power monitoring system supply chain safety monitoring early warning system which characterized in that includes:
the data acquisition module is used for acquiring original data;
the data processing module is used for carrying out data cleaning, word segmentation, part of speech tagging and word weight setting processing on the original data; the processed data is used for carrying out data analysis on a subsequent supply chain political security risk evaluation module, a supplier security risk evaluation module and a software and hardware security risk evaluation module;
the supply chain political safety risk assessment module is used for assessing bilateral relation between the affiliated country and region of the power monitoring system supplier and China and acquiring supply chain political safety risk data;
the supplier safety risk evaluation module is used for evaluating potential safety risks of the suppliers of the power monitoring system and acquiring supplier safety risk data;
the software and hardware security risk assessment module is used for assessing potential bugs of the software and hardware of the electric power monitoring system, assessing possible consequences caused by the bugs and acquiring software and hardware security risk data;
the supply chain comprehensive security risk assessment module is used for assessing the supply chain comprehensive security risk on the basis of the supply chain political security risk data, the supplier security risk data, the software and hardware security risk data and the original data to obtain the supply chain comprehensive security risk data;
the supply chain safety risk early warning and disposal module is used for pushing supply chain safety risk early warning and disposal information to an asset attribution unit of the power monitoring system and carrying out risk tracking management;
the data storage module is used for storing the original data and the data processed by the other modules;
the data acquisition module is respectively connected with the data processing module and the data storage module; the data processing module is connected with the data storage module; the data storage module is respectively connected with the supply chain political security risk assessment module, the supplier security risk assessment module, the software and hardware security risk assessment module and the supply chain comprehensive security risk assessment module; the supply chain comprehensive safety risk assessment module is respectively connected with the supply chain political safety risk assessment module, the supplier safety risk assessment module, the software and hardware safety risk assessment module and the supply chain safety risk early warning and handling module.
2. The power monitoring system supply chain safety monitoring and early warning system of claim 1, wherein the data acquisition module comprises:
the Internet data acquisition submodule is used for acquiring asset related data published by the Internet;
the private power network data acquisition submodule is used for acquiring asset information of the power monitoring system;
and the internal intelligence data acquisition submodule is used for acquiring the related data of the non-public assets acquired through the intelligence network.
3. The power monitoring system supply chain safety monitoring and early warning system of claim 2,
the related data of the assets published by the internet comprises supplier background data related to the assets of the power monitoring system, information of main commercial activities and political activities of the suppliers, statement information related to China and published by main leaders in the subordinate countries and regions of the suppliers, information of a main country information security vulnerability library and product vulnerability information published by the suppliers;
the asset information of the power monitoring system comprises hardware configuration data, software configuration data, and performance and after-sales service data of software and hardware suppliers in the system.
4. The power monitoring system supply chain safety monitoring and early warning system of claim 1,
the supply chain political safety risk data comprises a supply chain political safety risk coefficient, a risk level, a risk category and a risk content description;
the vendor security risk data comprises a vendor security risk coefficient, a risk level, a risk category and a risk content description;
the software and hardware security risk data comprise software and hardware vulnerability risk coefficients, risk levels, risk categories and risk content descriptions.
5. The power monitoring system supply chain safety monitoring and early warning system of claim 1,
the supply chain integrated safety risk data comprise supply chain integrated safety risk components, risk coefficients of all components, risk weights, risk levels, risk categories and risk content descriptions, and supply chain integrated safety risk coefficients, risk levels, risk categories and risk content descriptions.
6. The power monitoring system supply chain safety monitoring and early warning system of claim 1,
the supply chain security risk early warning and disposal information comprises supply chain integrated security risk data and a matched supply chain risk disposal plan.
7. A safety monitoring and early warning method for a power monitoring system supply chain is characterized by comprising the following steps:
step 1, a data acquisition module acquires data and stores original data into a data storage module;
step 1.1, the electric power private network data acquisition submodule acquires asset information of an electric power monitoring system through an electric power private network, wherein the asset information comprises hardware configuration data, software configuration data, and software and hardware supplier performing and after-sale service data in the system;
step 1.2, the internet data acquisition submodule acquires the related public release data of the assets through the internet according to the asset information of the power monitoring system;
step 1.3, the internal information data acquisition submodule acquires non-public data related to assets through an internal information network according to asset information of the power monitoring system;
step 2, the data processing module processes the original data acquired by the data acquisition module;
step 2.1, the data processing module reads all original data from the data storage module, and stores the original data into the data storage module after cleaning the data;
step 2.2, the data processing module reads asset information of the power monitoring system, performs correlation processing and stores the correlation information into the data storage module;
step 2.3, the data processing module reads the Chinese-related speech information, the supplier main commercial activity information and the political activity information which are issued by the main leaders of the subordinate countries and the regions of the suppliers, performs word segmentation, part of speech tagging and word weight setting, and stores the processed data in the data storage module;
step 3, the supply chain political safety risk assessment module reads the processed asset information of the power monitoring system and the statement information which is related to China and is issued by main leaders of the affiliated countries and the areas of the relevant suppliers of the assets from the data storage module, performs emotion analysis, assesses the bilateral relation between the affiliated countries and the areas of the relevant suppliers and China, calculates the supply chain political safety risk coefficient, and stores the supply chain political safety risk data into the data storage module;
step 4, the supplier safety risk assessment module reads the processed asset information of the power monitoring system, the background data of related suppliers, the commercial activities and the political activities of the suppliers from the data storage module, assesses the potential safety risks of the related suppliers, calculates the safety risk coefficient of the suppliers and stores the safety risk data of the suppliers into the data storage module;
step 5, the software and hardware safety risk assessment module reads the processed asset information of the power monitoring system, the information of the main national information safety leak library and the product leak information released by a supplier from the data storage module, extracts the leak information related to the asset, assesses the possible consequences caused by the leak, calculates the software and hardware safety risk coefficient and stores the software and hardware safety risk data into the data storage module;
step 6, the supply chain comprehensive safety risk assessment module reads supply chain political safety risk data, supplier safety risk data, software and hardware safety risk data and non-public internal information data from the data storage module, performs data association analysis, calculates a supply chain comprehensive safety risk coefficient and a risk level by combining expert judgment, and stores the supply chain comprehensive safety risk data in the data storage module;
step 7, the supply chain safety risk early warning and handling module reads the supply chain comprehensive safety risk data, the supply chain political safety risk data, the supplier safety risk data and the software and hardware safety risk data from the data storage module to carry out risk early warning and risk handling;
7.1, the supply chain safety risk early warning and handling module carries out supply chain safety risk early warning prompt on the asset affiliation unit of the related power monitoring system;
7.2, matching a supply chain risk processing plan by the supply chain safety risk early warning and handling module according to the read supply chain safety risk related data, and pushing the matched plan to an asset affiliation unit of the power monitoring system;
and 7.3, setting a time limit by the supply chain safety risk early warning and handling module to require an asset affiliation unit of the power monitoring system to submit supply chain risk measures and tracking and managing supply chain risks.
CN202010965081.4A 2020-09-15 2020-09-15 Power monitoring system supply chain safety monitoring and early warning system and method Active CN112053079B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202010965081.4A CN112053079B (en) 2020-09-15 2020-09-15 Power monitoring system supply chain safety monitoring and early warning system and method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202010965081.4A CN112053079B (en) 2020-09-15 2020-09-15 Power monitoring system supply chain safety monitoring and early warning system and method

Publications (2)

Publication Number Publication Date
CN112053079A true CN112053079A (en) 2020-12-08
CN112053079B CN112053079B (en) 2024-04-16

Family

ID=73610834

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202010965081.4A Active CN112053079B (en) 2020-09-15 2020-09-15 Power monitoring system supply chain safety monitoring and early warning system and method

Country Status (1)

Country Link
CN (1) CN112053079B (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113592421A (en) * 2021-06-16 2021-11-02 国核自仪系统工程有限公司 Security management method, system, device and medium for power monitoring system
CN114529228A (en) * 2022-04-24 2022-05-24 南京鼎研电力科技有限公司 Risk early warning method and system for power monitoring system supply chain

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2011227852A (en) * 2010-04-23 2011-11-10 Konica Minolta Holdings Inc Supply chain support system
US20160140466A1 (en) * 2014-11-14 2016-05-19 Peter Sidebottom Digital data system for processing, managing and monitoring of risk source data
CN107122440A (en) * 2017-04-21 2017-09-01 深圳市创艺工业技术有限公司 Power network goods and materials air control early warning system based on public sentiment big data
CN108256708A (en) * 2016-12-29 2018-07-06 国网冀北电力有限公司物资分公司 Power grid material supply quotient honours an agreement the method for Risk-warning
CN109064018A (en) * 2018-07-31 2018-12-21 郑州向心力通信技术股份有限公司 A kind of information security risk evaluation system and method
CN110009229A (en) * 2019-04-04 2019-07-12 泰康保险集团股份有限公司 Supply chain management method, device, storage medium and equipment based on block chain
CN111489065A (en) * 2020-03-27 2020-08-04 北京理工大学 Node risk assessment integrating ICT supply chain network topology and product business information

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2011227852A (en) * 2010-04-23 2011-11-10 Konica Minolta Holdings Inc Supply chain support system
US20160140466A1 (en) * 2014-11-14 2016-05-19 Peter Sidebottom Digital data system for processing, managing and monitoring of risk source data
CN108256708A (en) * 2016-12-29 2018-07-06 国网冀北电力有限公司物资分公司 Power grid material supply quotient honours an agreement the method for Risk-warning
CN107122440A (en) * 2017-04-21 2017-09-01 深圳市创艺工业技术有限公司 Power network goods and materials air control early warning system based on public sentiment big data
CN109064018A (en) * 2018-07-31 2018-12-21 郑州向心力通信技术股份有限公司 A kind of information security risk evaluation system and method
CN110009229A (en) * 2019-04-04 2019-07-12 泰康保险集团股份有限公司 Supply chain management method, device, storage medium and equipment based on block chain
CN111489065A (en) * 2020-03-27 2020-08-04 北京理工大学 Node risk assessment integrating ICT supply chain network topology and product business information

Non-Patent Citations (4)

* Cited by examiner, † Cited by third party
Title
S CHARNEY, ETC: "Cyber Supply Chain Risk Management: Toward a Global Vision of Transparency and Trust", pages 1 - 17, Retrieved from the Internet <URL:《https://icscsi.org/library/Documents/Risk_Management/Microsoft%20-%20Cyber%20Supply%20Chain%20Risk%20Management%20(White%20Paper).pdf》> *
刘在爽 等: "自主信息装备供应链安全问题探讨", 《信息安全与通信保密》, no. 10, pages 79 - 84 *
张世琨 等: "软件供应链安全的风险和成因分析", 《中国信息安全》, no. 11, pages 48 - 50 *
蒋诚智 等: "电力信息系统供应链安全管理研究", 《2012年电力通信管理暨智能电网通信技术论坛论文集》, pages 287 - 290 *

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113592421A (en) * 2021-06-16 2021-11-02 国核自仪系统工程有限公司 Security management method, system, device and medium for power monitoring system
CN114529228A (en) * 2022-04-24 2022-05-24 南京鼎研电力科技有限公司 Risk early warning method and system for power monitoring system supply chain

Also Published As

Publication number Publication date
CN112053079B (en) 2024-04-16

Similar Documents

Publication Publication Date Title
CN111008193B (en) Data cleaning and quality evaluation method and system
CN108198408B (en) Self-adaptive anti-electricity-stealing monitoring method and system based on electricity information acquisition system
CN102982077B (en) User data disposal route and device
CN112053079A (en) Power monitoring system supply chain safety monitoring and early warning system and method
US11906112B2 (en) Methods for safety management of compressors in smart gas pipeline network and internet of things systems thereof
CN115865649B (en) Intelligent operation and maintenance management control method, system and storage medium
CN111371188A (en) Real-time early warning system for abnormal power consumption data
CN113554361B (en) Comprehensive energy system data processing and calculating method and processing system
CN113822488A (en) Risk prediction method and device for financing lease, computer equipment and storage medium
CN111506635A (en) System and method for analyzing residential electricity consumption behavior based on autoregressive naive Bayes algorithm
CN108304990B (en) Power failure sensitivity pre-judging method and system
CN114240116A (en) Artificial intelligence risk monitoring and early warning system
CN112116205B (en) Image method, device and storage medium for power utilization characteristics of platform area
CN112800837B (en) Bird recognition system and method
CN114202179A (en) Target enterprise identification method and device
CN116777124B (en) Power stealing monitoring method based on user power consumption behavior
CN113435721A (en) Method for constructing secondary data center of intelligent substation
CN117141265A (en) Operation monitoring system and method for intelligent wireless charging pile
CN116881958A (en) Power grid big data safety protection method, system, electronic equipment and storage medium
KR101909138B1 (en) Receivable recovery support system for medium-small enterprise account receivable bond decrease and bad debt prevention based on big data
CN116247819A (en) System and method for monitoring line loss of transformer area based on big data
CN116228312A (en) Processing method and device for large-amount point exchange behavior
CN114154617A (en) Low-voltage resident user abnormal electricity utilization identification method and system based on VFL
CN117094688B (en) Digital control method and system for power supply station
CN111967783A (en) Enterprise data analysis system based on calculation artificial intelligence

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant