Skip to content
Open access

A hierarchical trajectory model of cyber resilience in safety-critical cyber-physical systems

Aug 2026 · Environment Systems and Decisions · Vol 46 · 0 citations · 27 references

TL;DR

A hierarchical, CPS-specific structure of resilience domains spanning safety, engineering, organisational, governance and contextual attributes is defined, and a domain-attributed trajectory model is developed that maps each domain to the phase of disturbance it dominantly shapes and to the corresponding NIST cyber resilience goal.

Abstract

Resilience in safety-critical cyber-physical systems is not a settled concept. It carries competing meanings inherited from four distinct intellectual traditions—materials science, ecology, safety engineering and cybersecurity—each with its own definition of what a successful outcome looks like. This tension is not merely academic. It produces operational frameworks in which robustness, adaptability, safety constraint and recovery are treated as equivalent attributes, their structural differences obscured. The result is guidance that can satisfy audit requirements while leaving complex systems vulnerable in ways that compliance-driven requirements cannot detect. This paper addresses that gap in three steps. First, it reconciles the engineering and ecological resilience traditions through the Cyber-Compatibilism principle. Second, it defines a hierarchical, CPS-specific structure of resilience domains spanning safety, engineering, organisational, governance and contextual attributes. Third, it develops a domain-attributed trajectory model that maps each domain to the phase of disturbance it dominantly shapes and to the corresponding NIST cyber resilience goal. No domain operates in isolation: each phase emerges from the combined action of attributes across all domains, with one typically dominant but nonsufficient alone. The model is informed by two industrial case studies and a physical safety-critical testbed representative of those systems; the empirical evidence base is reported in a companion paper.

Read PDF

Similar papers

Review Open access Sep 2026

Sustainability–Resilience Trade-Offs in Edge-Enabled Systems: A Comprehensive Survey

Edge-enabled Internet of Things (IoT) systems are rapidly becoming the operational substrate of mission-critical infrastructure spanning industrial automation, smart healthcare, vehicular ecosystems, and cyber–physical environments. The distributed, resource-constrained, and physically exposed nature of these systems m...

Nithya Nedungadi, S. Sankaran · 1 citation
Conference Aug 2026

Towards Productive Cyber Resilience and Safety Analysis in Model-Based Systems Engineering: a Quantitative Framework and Prototype Tool

The integration of cyber resilience and safety analysis within Model-Based Systems Engineering (MBSE) remains a persistent challenge in defence and safety-critical systems engineering. Fragmented methodologies, tool silos, and the absence of standardised quantitative metrics impede productive, scalable analysis. This p...

Serdar Akar, H. Dogan, Shamal Faily et al. · 0 citations
Conference Open access Aug 2026

A system dynamics approach to assessing organisational resilience in digitally disrupted sociotechnical systems

Organisational resilience is a critical capability for complex sociotechnical systems facing persistent digital and cyber disruptions. Yet, it remains difficult to measure dynamically, particularly in service-oriented infrastructures such as national payment systems. This study examines whether a System Dynamics (SD) m...

D. Manzini, Rudolph Oosthuizen · 0 citations
Open access Sep 2026

Toward a cultural cyber-critical ecosystem: concepts, threats and challenges

The purpose of this paper is to introduce and formalize the Cultural Cyber-Critical Ecosystem (C3E) as a conceptual and operational framework for understanding Cultural Heritage as a cyber-critical domain. This study specifically addresses cyber-cognitive threats, identified as a pressing yet largely underexplored...

Emanuele Bellini, Emiliano Degl'Innocenti · 0 citations
Open access Sep 2026

Beyond resilience: engineering antifragility and hazard mitigation in safety–critical systems using a stress–strain model

Traditional resilience engineering struggles with modern safety–critical systems operating under extreme uncertainty. Antifragility, the ability to gain from systemic stressors and near-misses, remains a philosophical ideal, lacking a rigorous, quantitative framework for engineering. The Systemic Stress–Strain Model (S...

Uriel Hochmann, Yoram Reich · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.