Termin, Thomas und Lichte, Daniel und Wolf, Kai-Dietrich (2020) Approach to Generic Multilevel Risk Assessment of Automotive Mobile Access Systems. In: 30th European Safety and Reliability Conference, ESREL 2020 and 15th Probabilistic Safety Assessment and Management Conference, PSAM15 2020, Seiten 4611-4618. Research Publishing Services. Proceedings of the 30th European Safety and Reliability Conference and 15th Probabilistic Safety Assessment and Management Conference, 2020-11-01 - 2020-11-05, Venedig, Italien. doi: 10.3850/978-981-14-8593-0_5778-cd. ISBN 978-981148593-0.
PDF
796kB |
Offizielle URL: http://rpsonline.com.sg/proceedings/9789811485930/html/5778.xml
Kurzfassung
Nowadays mobility companies have to deal with the digitization of analog products and services. A central scope of interest is the design of mobile access systems, intended to replace the physical key. However, these systems do not only involve new use cases but also risks that place safety and security issues in the foreground of the system design. To ensure protection against safety and security risks, a procedure that allows multilevel system evaluation is necessary. Practical experience in risk assessment (SRA) shows field-specific approaches widely used. In order to facilitate an embedded safe and secure system design, this paper introduces a generic assessment method, which considers different system configurations and multilevel safety and security risks. Within this procedure, previously identified technical requirements are mapped in a Morphological Box (MB) to describe the configuration space (CS) of the system. In order to evaluate the system, use cases and sequences as well as misuse cases are mapped using UML. Identified threats and attack paths are transferred into fault and attack trees. The results of the fault tree analysis (FTA) and attack tree analysis (ATA) allows the definition of security requirements. Additionally, the process reveals non-standard scenarios that demand further detailed analysis. The proposed approach is applied to the example of an automotive mobile access system.
elib-URL des Eintrags: | https://elib.dlr.de/147241/ | ||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Dokumentart: | Konferenzbeitrag (Vortrag) | ||||||||||||||||
Titel: | Approach to Generic Multilevel Risk Assessment of Automotive Mobile Access Systems | ||||||||||||||||
Autoren: |
| ||||||||||||||||
Datum: | 2020 | ||||||||||||||||
Erschienen in: | 30th European Safety and Reliability Conference, ESREL 2020 and 15th Probabilistic Safety Assessment and Management Conference, PSAM15 2020 | ||||||||||||||||
Referierte Publikation: | Ja | ||||||||||||||||
Open Access: | Ja | ||||||||||||||||
Gold Open Access: | Nein | ||||||||||||||||
In SCOPUS: | Ja | ||||||||||||||||
In ISI Web of Science: | Nein | ||||||||||||||||
DOI: | 10.3850/978-981-14-8593-0_5778-cd | ||||||||||||||||
Seitenbereich: | Seiten 4611-4618 | ||||||||||||||||
Verlag: | Research Publishing Services | ||||||||||||||||
ISBN: | 978-981148593-0 | ||||||||||||||||
Status: | veröffentlicht | ||||||||||||||||
Stichwörter: | Security, Safety, Risk Assessment, Mobile Access System, Morphological Box, UML, Misuse Diagram, Requirement Engineering, Attack Tree, Fault Tree | ||||||||||||||||
Veranstaltungstitel: | Proceedings of the 30th European Safety and Reliability Conference and 15th Probabilistic Safety Assessment and Management Conference | ||||||||||||||||
Veranstaltungsort: | Venedig, Italien | ||||||||||||||||
Veranstaltungsart: | internationale Konferenz | ||||||||||||||||
Veranstaltungsbeginn: | 1 November 2020 | ||||||||||||||||
Veranstaltungsende: | 5 November 2020 | ||||||||||||||||
HGF - Forschungsbereich: | keine Zuordnung | ||||||||||||||||
HGF - Programm: | keine Zuordnung | ||||||||||||||||
HGF - Programmthema: | keine Zuordnung | ||||||||||||||||
DLR - Schwerpunkt: | keine Zuordnung | ||||||||||||||||
DLR - Forschungsgebiet: | keine Zuordnung | ||||||||||||||||
DLR - Teilgebiet (Projekt, Vorhaben): | keine Zuordnung | ||||||||||||||||
Standort: | Rhein-Sieg-Kreis | ||||||||||||||||
Institute & Einrichtungen: | Institut für den Schutz terrestrischer Infrastrukturen > Resilienz- und Risikomethodik | ||||||||||||||||
Hinterlegt von: | Lichte, Dr.-Ing. Daniel | ||||||||||||||||
Hinterlegt am: | 13 Dez 2021 13:52 | ||||||||||||||||
Letzte Änderung: | 11 Jun 2024 13:59 |
Nur für Mitarbeiter des Archivs: Kontrollseite des Eintrags