TUHH Open Research
Help
  • Log In
    New user? Click here to register.Have you forgotten your password?
  • English
  • Deutsch
  • Communities & Collections
  • Publications
  • Research Data
  • People
  • Institutions
  • Projects
  • Statistics
  1. Home
  2. TUHH
  3. Publication References
  4. CASCADE: An Asset-driven Approach to Build Security Assurance Cases for Automotive Systems
 
Options

CASCADE: An Asset-driven Approach to Build Security Assurance Cases for Automotive Systems

Publikationstyp
Journal Article
Date Issued
2023-02-20
Sprache
English
Author(s)
Mohamad, Mazen  
Jolak, Rodi  
Askerdal, Örjan  
Steghöfer, Jan-Philipp  
Scandariato, Riccardo  
Institut
Software Security E-22  
TORE-URI
http://hdl.handle.net/11420/15187
Journal
ACM transactions on cyber-physical systems  
Volume
7
Issue
1
Article Number
3
Citation
ACM Transactions on Cyber-Physical Systems 7 (1): 3 (2023-02-20)
Publisher DOI
10.1145/3569459
Scopus ID
2-s2.0-85151887634
Security Assurance Cases (SAC) are structured arguments and evidence bodies used to reason about the security of a certain system. SACs are gaining focus in the automotive industry, as the needs for security assurance are growing in this domain. However, the state-of-the-arts lack a mature approach able to suit the needs of the automotive industry. In this article, we present CASCADE, an asset-driven approach for creating SAC, which is inspired by the upcoming security standard ISO/SAE-21434 as well as the internal needs of automotive Original Equipment Manufacturers (OEMs). CASCADE also differentiates itself from the state-of-the-art by incorporating a way to reason about the quality of the constructed security assurance case. We created the approach by conducting an iterative design science research study. We illustrate the results using the example case of the road vehicle's headlamp provided in the ISO standard. We also illustrate how our approach aligns well with the structure and content of the ISO/SAE-21434 standard, hence demonstrating the practical applicability of CASCADE in an industrial context.
Subjects
assurance cases
automotive systems
Security
TUHH
Weiterführende Links
  • Contact
  • Send Feedback
  • Cookie settings
  • Privacy policy
  • Impress
DSpace Software

Built with DSpace-CRIS software - Extension maintained and optimized by 4Science
Design by effective webwork GmbH

  • Deutsche NationalbibliothekDeutsche Nationalbibliothek
  • ORCiD Member OrganizationORCiD Member Organization
  • DataCiteDataCite
  • Re3DataRe3Data
  • OpenDOAROpenDOAR
  • OpenAireOpenAire
  • BASE Bielefeld Academic Search EngineBASE Bielefeld Academic Search Engine
Feedback