{"title":"Sesar security 2020: How to embed and assure security in system-of-systems engineering?","authors":"R. Koelle, M. Hawley","doi":"10.1109/ICNSURV.2012.6218393","DOIUrl":null,"url":null,"abstract":"Significant efforts are underway to modernise global air traffic management systems. This will result in a level of connectivity between different systems that has never before been achieved, creating a `system of systems' that requires a very high level of dependability. To achieve this dependability, security must be designed-in rather than relying on hardening of systems post implementation. This is also expected to minimise the costs of security. The European ATM modernisation programme, SESAR, has been taking a systems engineering approach to ensure that R&D is rapidly transferred to industrialisation and then deployment. This approach has been applied to security, organised around `operational focus areas' that represent discrete operational improvements. In such a complex programme, traditional risk analysis and mitigation was thought to be limited when attempting a system wide coherence for security. Hence the SESAR programme is adopting a `security case' approach, drawing on lessons learned in safety cases, validation & verification of ATM R&D, and aligned to the system engineering approach.","PeriodicalId":126055,"journal":{"name":"2012 Integrated Communications, Navigation and Surveillance Conference","volume":"14 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2012-04-24","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"12","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2012 Integrated Communications, Navigation and Surveillance Conference","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICNSURV.2012.6218393","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 12
Abstract
Significant efforts are underway to modernise global air traffic management systems. This will result in a level of connectivity between different systems that has never before been achieved, creating a `system of systems' that requires a very high level of dependability. To achieve this dependability, security must be designed-in rather than relying on hardening of systems post implementation. This is also expected to minimise the costs of security. The European ATM modernisation programme, SESAR, has been taking a systems engineering approach to ensure that R&D is rapidly transferred to industrialisation and then deployment. This approach has been applied to security, organised around `operational focus areas' that represent discrete operational improvements. In such a complex programme, traditional risk analysis and mitigation was thought to be limited when attempting a system wide coherence for security. Hence the SESAR programme is adopting a `security case' approach, drawing on lessons learned in safety cases, validation & verification of ATM R&D, and aligned to the system engineering approach.