A systematic approach to a qualified security risk analysis for vehicular IT systems
Abstract
By now, security engineering is an accepted challenge in the development of most vehicular IT systems. However, even though many vehicular security threats and effective protection measures are known in general, automotive engineers have difficulties to realize efficient security solutions such that the costs for certain protection measures are appropriate to the actual security threats in order to avoid “underprotection” as well as “over-protection”, which both are unacceptable particularly in the automotive domain. By applying a thorough security risk analysis, which incorporates the special characteristics of the automotive domain, we would have a qualified taxonomy to make well-founded decisions about the security measures effectively required. We therefor present a methodical approach for conducting a meaningful security risk analysis, which focusses particularly on vehicular IT systems. This approach applies systematic estimations for the two mandatory factors of any risk analysis, the potential damages and the probability of a successful security attack, both based on industry-proven methods and taxonomies carefully adapted to vehicular IT security scenarios.
- Citation
- BibTeX
Wolf, M. & Scheibel, M.,
(2012).
A systematic approach to a qualified security risk analysis for vehicular IT systems.
In:
Plödereder, E., Dencker, P., Klenk, H., Keller, H. B. & Spitzer, S.
(Hrsg.),
Automotive - Safety & Security 2012.
Bonn:
Gesellschaft für Informatik e.V..
(S. 195-210).
@inproceedings{mci/Wolf2012,
author = {Wolf, Marko AND Scheibel, Michael},
title = {A systematic approach to a qualified security risk analysis for vehicular IT systems},
booktitle = {Automotive - Safety & Security 2012},
year = {2012},
editor = {Plödereder, Erhard AND Dencker, Peter AND Klenk, Herbert AND Keller, Hubert B. AND Spitzer, Silke} ,
pages = { 195-210 },
publisher = {Gesellschaft für Informatik e.V.},
address = {Bonn}
}
author = {Wolf, Marko AND Scheibel, Michael},
title = {A systematic approach to a qualified security risk analysis for vehicular IT systems},
booktitle = {Automotive - Safety & Security 2012},
year = {2012},
editor = {Plödereder, Erhard AND Dencker, Peter AND Klenk, Herbert AND Keller, Hubert B. AND Spitzer, Silke} ,
pages = { 195-210 },
publisher = {Gesellschaft für Informatik e.V.},
address = {Bonn}
}
Haben Sie fehlerhafte Angaben entdeckt? Sagen Sie uns Bescheid: Send Feedback
More Info
ISBN: 978-3-88579-604-6
ISSN: 1617-5468
xmlui.MetaDataDisplay.field.date: 2012
Language:
(en)

Content Type: Text/Conference Paper