Adding Security Concerns to Safety Critical Certification

被引:6
|
作者
Nostro, Nicola [1 ]
Bondavalli, Andrea [1 ]
Silva, Nuno [2 ]
机构
[1] Univ Florence, Consorzio Interuniv Nazl Informat, Florence, Italy
[2] Crit Software SA, Project Management Off ASD, Coimbra, Portugal
来源
2014 IEEE INTERNATIONAL SYMPOSIUM ON SOFTWARE RELIABILITY ENGINEERING WORKSHOPS (ISSREW) | 2014年
关键词
Safety; Security; Safety-critical system; Cyber Threats; Threats Library;
D O I
10.1109/ISSREW.2014.56
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Safety-critical systems represent those systems whose failure may lead to catastrophic consequences on users and environment. Several methods and hazard analysis, and standards in different disciplines, have been defined in order to assure the systems have been designed in compliance with safety requirements. The increasing presence of automatic controlling operation, the massive use of networks to transfer data and information, and the human operations introduce a new security concern in safety-critical systems. Security issues (threats) do not only have direct impact on systems availability, integrity and confidentiality, but they also can influence the safety aspects of the safety critical systems. Today taking into account malicious actions through intrusion into communications and computer control systems become a critical and not negligible step during the design and the assessment of safety-critical systems. The paper describes a general methodology to support the assessment of safety-critical system with respect to security aspects. The methodology is based on a library of security threats. Such threats, identified during the work, have been mapped to the NIST security controls. Then, a preliminary representation of the library in the aerospace domain is shown through some simple example, together with some considerations on the relation between security issues and safety impact as a valuable addition to the safety critical systems certification process.
引用
收藏
页码:521 / 526
页数:6
相关论文
共 50 条
  • [31] Safety concerns with Fluoroquinolones
    Mehhorn, Allana J.
    Brown, Dana A.
    ANNALS OF PHARMACOTHERAPY, 2007, 41 (11) : 1859 - 1866
  • [32] Toward Security and Performance Certification of OpenStack
    Anisetti, Marco
    Ardagna, Claudio A.
    Damiani, Ernesto
    Gaudenzi, Filippo
    Veca, Roberto
    2015 IEEE 8TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING, 2015, : 564 - 571
  • [33] Subjective Security and Safety - S-BPM as a Base for the Description of Security and Safety Objectives
    Dirndorfer, Max
    Handy, Barbara
    Schneeberger, Josef
    Fischer, Herbert
    S-BPM ONE - EDUCATION AND INDUSTRIAL DEVELOPMENTS, 2012, 284 : 214 - 219
  • [34] Dihydrocodeine: safety concerns
    Leppert, Wojciech
    Woron, Jaroslaw
    EXPERT REVIEW OF CLINICAL PHARMACOLOGY, 2016, 9 (01) : 9 - 12
  • [35] Analysis of Critical System Certification
    Steele, Panayiotis
    Knight, John
    2014 IEEE 15TH INTERNATIONAL SYMPOSIUM ON HIGH-ASSURANCE SYSTEMS ENGINEERING (HASE), 2014, : 129 - 136
  • [36] Security certification and labelling in Internet of Things
    Baldini, Gianmarco
    Skarmeta, Antonio
    Fourneret, Elizabeta
    Neisse, Ricardo
    Legeard, Bruno
    Le Gall, Franck
    2016 IEEE 3RD WORLD FORUM ON INTERNET OF THINGS (WF-IOT), 2016, : 627 - 632
  • [37] Towards a Formal Approach to Analysing Security of Safety-Critical Systems
    Vistbakka, Inna
    Troubitsyna, Elena
    2018 14TH EUROPEAN DEPENDABLE COMPUTING CONFERENCE (EDCC 2018), 2018, : 182 - 189
  • [38] Safety Critical Software and Security - How Low Can You Go?
    Bernsmed, Karin
    Jaatun, Martin Gilje
    Meland, Per Hakon
    2018 IEEE/AIAA 37TH DIGITAL AVIONICS SYSTEMS CONFERENCE (DASC), 2018, : 210 - 215
  • [39] Quality and safety nexus: exploring critical factors in global food security
    Qazi, Abroon
    Al-Mhdawi, M. K. S.
    INTERNATIONAL JOURNAL OF QUALITY & RELIABILITY MANAGEMENT, 2025, 42 (03) : 1018 - 1040
  • [40] Analysis of safety benefits and security concerns from the use of autonomous vehicles: A grouped random parameters bivariate probit approach with heterogeneity in means
    Ahmed, Sheikh Shahriar
    Pantangi, Sarvani Sonduru
    Eker, Ugur
    Fountas, Grigorios
    Still, Stephen E.
    Anastasopoulos, Panagiotis Ch
    ANALYTIC METHODS IN ACCIDENT RESEARCH, 2020, 28