A Methodology for Integrating Security into the Automotive Development Process


KIPS Transactions on Software and Data Engineering, Vol. 9, No. 12, pp. 387-402, Dec. 2020
https://doi.org/10.3745/KTSDE.2020.9.12.387,   PDF Download:
Keywords: Automotive Development, Evidence-based Standards, Secure SDLC, UNECE Cybersecurity Regulation
Abstract

Conventional automotive development has mainly focused on ensuring correctness and safety and security has been relatively neglected. However, as the number of automotive hacking cases has increased due to the increased Internet connectivity of automobiles, international organizations such as the United Nations Economic Commission for Europe(UNECE) are preparing cybersecurity regulations to ensure security for automotive development. As with other IT products, automotive cybersecurity regulation also emphasize the concept of "Security by Design", which considers security from the beginning of development. In particular, since automotive development has a long lifecycle and complex supply chain, it is very difficult to change the architecture after development, and thus Security by Design is much more important than existing IT products. The problem, however, is that no specific methodology for Security by Design has been proposed on automotive development process. This paper, therefore, proposes a specific methodology for Security by Design on Automotive development. Through this methodology, automotive manufacturers can simultaneously consider aspects of functional safety, and security in automotive development process, and will also be able to respond to the upcoming certification of UNECE automotive cybersecurity regulations.


Statistics
Show / Hide Statistics

Statistics (Cumulative Counts from September 1st, 2017)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article
[IEEE Style]
S. Jeong, S. Kang, S. Kim, "A Methodology for Integrating Security into the Automotive Development Process," KIPS Transactions on Software and Data Engineering, vol. 9, no. 12, pp. 387-402, 2020. DOI: https://doi.org/10.3745/KTSDE.2020.9.12.387.

[ACM Style]
Seungyeon Jeong, Sooyoung Kang, and Seungjoo Kim. 2020. A Methodology for Integrating Security into the Automotive Development Process. KIPS Transactions on Software and Data Engineering, 9, 12, (2020), 387-402. DOI: https://doi.org/10.3745/KTSDE.2020.9.12.387.