首页> 外文会议>Safety-Critical Systems Symposium >An Effective Approach to Meeting the Challenges of RTCA DO-326A
【24h】

An Effective Approach to Meeting the Challenges of RTCA DO-326A

机译:满足RTCA DO-326A挑战的有效方法

获取原文

摘要

RTCA's DO-326A describes a Security Airworthiness Process that aligns the security process to the safety process with the intent of identifying the impact of malicious cyber security attacks on the safety of an airborne system. Dstl have developed an incremental process for the engagement with stakeholders such that available supporting evidence to the DO-326A objectives can be identified and reasoned with. Specifically, the process defines an approach to utilise pre-existing security evidence from alternative security engineering processes, and exploits the Goal Structuring Notation (GSN) to store and explain the argument as to whether an acceptable means of compliance can be determined based on the available evidence. Key to the value of this work is the ability to identify any fundamental shortfalls in meeting the intent of DO-326A, that is, in addressing the challenge of security-informed safety. By systematically assessing the potential for existing evidence to meet some or all of DO-326A, the dialogue with stakeholders can be focussed to the development of mitigations where it is required.
机译:RTCA的DO-326A描述了一种安全可适航过程,其将安全过程与安全过程对准,以识别恶意网络安全攻击对空降系统安全的影响。 DSTL已经开发了与利益相关者的参与的增量过程,以便可以识别和推理为DO-326A目标的可用支持证据。具体地,该过程定义了一种方法来利用来自替代安全工程过程的预先存在的安全证据,并利用目标结构化符号(GSN)来存储和解释可以根据可用确定可接受的合规手段的参数。证据。这项工作价值的关键是能够识别在满足DO-326A的意图时识别任何基本缺口,即解决安全知识的安全的挑战。通过系统地评估现有证据符合某些或全部DO-326A的潜力,可以将与利益相关者的对话集中在需要的情况下发展所需的缓解。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号