Towards Understanding and Applying Security Assurance Cases for Automotive Systems
Mazen Mohamad

TL;DR
This paper introduces CASCADE, a structured approach for creating Security Assurance Cases in automotive systems, aligned with ISO/SAE-21434, to enhance security assurance in the evolving automotive industry.
Contribution
The paper presents CASCADE, a novel methodology for developing security assurance cases tailored for automotive systems, integrating quality assurance and standard compliance.
Findings
CASCADE is suitable for industrial automotive development.
It aligns well with company workflows.
It has potential to scale for large organizations.
Abstract
Security Assurance Cases (SAC) are structured bodies of arguments and evidence used to reason about security properties of a certain artefact. SAC are gaining focus in the automotive domain as the need for security assurance is growing due to software becoming a main part of vehicles. Market demands for new services and products in the domain require connectivity, and hence, raise security concerns. Regulators and standardisation bodies started recently to require a structured for security assurance of products in the automotive domain, and automotive companies started, hence, to study ways to create and maintain these cases, as well as adopting them in their current way of working. In order to facilitate the adoption of SAC in the automotive domain, we created CASCADE, an approach for creating SAC which have integrated quality assurance and are compliant with the requirements of…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsSafety Systems Engineering in Autonomy · Information and Cyber Security · Software Reliability and Analysis Research
