A Review of Threat Analysis and Risk Assessment Methods in the Automotive Context

Georg Macher, Eric Armengaud, Eugen Brenner, Christian Josef Kreiner

Publikation: Beitrag in Buch/Bericht/KonferenzbandBeitrag in einem KonferenzbandForschungBegutachtung

Abstract

Consumer demands for advanced automotive assistant systems and connectivity of cars to the internet make cyber-security an important requirement for vehicle providers. As vehicle providers gear up for the cyber security challenges, they can leverage experiences from many other domains, but nevertheless, must face several unique challenges. Thus, several security standards are well established and do not need to be created from scratch. The recently released SAE J3061 guidebook for cyber-physical vehicle systems provides information and high-level principles for automotive organizations to identify and assess cyber-security threats and design cyber-security aware systems.

In the course of this document, a review of available threat analysis methods and the recommendations of the SAE J3061 guidebook regarding threat analysis and risk assessment method (TARA) is given. The aim of this work is to provide a position statement for the discussion of available analysis methods and their applicability for early development phases in context of ISO 26262 and SAE J3061.
Keywords
TARAISO 26262SAE J3061AutomotiveSecurity analysis
Originalspracheenglisch
TitelInternational Conference on Computer Safety, Reliability, and Security
UntertitelSAFECOMP 2016
Herausgeber (Verlag)Springer International Publishing AG
Seiten130
Seitenumfang141
DOIs
PublikationsstatusVeröffentlicht - 2016

Publikationsreihe

NameLecture Notes in Computer Science
Herausgeber (Verlag)Springer
Band9922 2016

    Fingerprint

Schlagwörter

    Fields of Expertise

    • Information, Communication & Computing
    • Mobility & Production

    Dieses zitieren

    Macher, G., Armengaud, E., Brenner, E., & Kreiner, C. J. (2016). A Review of Threat Analysis and Risk Assessment Methods in the Automotive Context. in International Conference on Computer Safety, Reliability, and Security: SAFECOMP 2016 (S. 130). (Lecture Notes in Computer Science; Band 9922 2016). Springer International Publishing AG . https://doi.org/10.1007/978-3-319-45477-1_11