Assessment of Emerging Standards for Safety and Security Co-Design on a Railway Case Study

被引:4
作者
Ponsard, Christophe [1 ]
Grandclaudon, Jeremy [1 ]
Massonet, Philippe [1 ]
Touzani, Mounir
机构
[1] CETIC Res Ctr, Gosselies, Belgium
来源
NEW TRENDS IN MODEL AND DATA ENGINEERING (MEDI 2018) | 2018年 / 929卷
关键词
Cyber security; Safety; Goals; Threats; Co-design Standards; CYBER; REQUIREMENTS; SYSTEMS;
D O I
10.1007/978-3-030-02852-7_12
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Design for safety-critical software intended for domains like transportation or medical systems is known to be difficult but is required to give a sufficient level of assurance that the system will not harm or kill people. To add to the difficulty, systems have now become highly connected and are turning into cyber-physical systems. This results in the need to address intentional cyber security threats on top of risks related to unintentional software defects. Different approaches are being defined to co-engineer both software security and safety in a consistent way. This paper aims at providing a deeper understanding of those approaches and the evolution of related standards by analysing them using a sound goal-oriented framework that can model both kind of properties and also reason on them in a risk-oriented way. In the process interesting codesign patterns are also identified and discussed. The approach is driven by a real world open specification from the railways.
引用
收藏
页码:130 / 145
页数:16
相关论文
共 29 条
[1]  
[Anonymous], 2018, RISK MANAGEMENT ISO
[2]  
[Anonymous], 2010, Qualification Standard IEC 61508
[3]  
[Anonymous], 2003, PROC RHAS
[4]   Basic concepts and taxonomy of dependable and secure computing [J].
Avizienis, A ;
Laprie, JC ;
Randell, B ;
Landwehr, C .
IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2004, 1 (01) :11-33
[5]  
Binbin Chen, 2015, Computer Safety, Reliability and Security. SAFECOMP 2015 Workshops, ASSURE, DECSoS, ISSE, ReSA4CI and SASSUR. Proceedings: LNCS 9338, P277, DOI 10.1007/978-3-319-24249-1_24
[6]   Software Safety and Security Risk Mitigation in Cyber-physical Systems INTRODUCTION [J].
Biro, Miklos ;
Mashkoor, Atif ;
Sametinger, Johannes ;
Seker, Remzi .
IEEE SOFTWARE, 2018, 35 (01) :24-29
[7]  
Blanquart J.P., 2012, ERTS 2012
[8]  
CENELEC, 2011, EN 50128
[9]  
Greenberg A, 2015, WIRED
[10]  
Hazell P.M., 2017, INTEGRATING IEC 6244