Hello,
We have submitted a paper: “Security Risk Management in Autonomous Driving Vehicles:
Architecture Perspective” to NordSec2020 <https://nordsec2020.on.liu.se>.
Co-authors: Rando Tõnisson, Raimundas Matulevičius, and Abasi-Amefon O. Affia (University
of Tartu)
Abstract: Security risk management is an important activity in engineering autonomous
vehicles (AV). For autonomous driving service providers, it is necessary to explain what
risks exist in the system and how they could be mitigated. Security risk management
methods allow system stakeholders to manage the security risks within their systems.
Unfortunately, an accepted standard to carry out security risk management, specifically
for autonomous vehicles, is not presented in the reviewed literature. In this paper, we
explore how to protect AV systems against the security risks and focus on the
architectural perspective of such systems. To target the problem we security risk
management (ISSRM) and operationally critical threat, asset and vulnerability evaluation
(OCTAVE allegro) methods to define and estimate the AV protected asset, risk and risk
treatment means. Our approach consists of a literaure study, case analysis, and interview
of AV experts. The finding can be helpful to the AV engineers and security analysis to
support the rationale for the decisions about the AV security investment.
The research done is in the scope of WP6, task 6.5. If paper is accepted we will
acknowledge the SPARTA project.
Best greetings,
Raimundas