Security & Safety by Model-based Requirements Engineering

被引:8
|
作者
Japs, Sergej [1 ]
机构
[1] Fraunhofer Res Inst Mechatron Syst Design IEM, Prod Engn, Paderborn, Germany
关键词
Security; Safety; Requirements engineering; Cyber-physical systems; Systems engineering and theory - Systems Modeling Language;
D O I
10.1109/RE48521.2020.00062
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber-physical systems (CPS), like autonomous vehicles, are intelligent and networked. The development of such systems requires interdisciplinary cooperation between different stakeholders. A lack of system understanding between stakeholders can lead to unidentified security threats & safety hazards in requirements engineering, resulting in high costs in product development. In particular, a lack of an integrative consideration of security threats & safety hazards can compromise safety compliance for CPS. Model-based requirements engineering (MBRE) improves the understanding of systems between stakeholders by additionally creating supporting models to system requirements. However, MBRE approaches only partially address security threats & safety hazards. In particular, their integrative consideration is not taken into account. Established security & safety approaches are either only applicable to specific disciplines or only partially consider security threats & safety hazards. Overall, existing approaches do not fully cover the MBRE process. In the context of this paper, the results of three scientific papers are consolidated with the aim to create a basis for a holistic MBRE approach, which considers security threats & safety hazards integratively. In each of the papers, sub-criteria of the holistic MBRE approach are presented. Furthermore, elaborated and planned tools for the individual process steps are presented.
引用
收藏
页码:422 / 427
页数:6
相关论文
共 50 条
  • [31] Evolution in Domain Model-Based Requirements Engineering for Control Systems Development
    Nissen, H. W.
    Schmitz, D.
    Jarke, M.
    Rose, T.
    Drews, P.
    Hesseler, F. J.
    PROCEEDINGS OF THE 2009 17TH IEEE INTERNATIONAL REQUIREMENTS ENGINEERING CONFERENCE, 2009, : 323 - +
  • [32] Teaching Model-based Requirements Engineering to Industry Professionals: An Experience Report
    Daun, Marian
    Brings, Jennifer
    Goger, Marcel
    Koch, Walter
    Weyer, Thorsten
    2021 IEEE/ACM 43RD INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING: JOINT TRACK ON SOFTWARE ENGINEERING EDUCATION AND TRAINING (ICSE-JSEET 2021), 2021, : 40 - 49
  • [33] Towards the Integration of Cybersecurity Risk Assessment into Model-based Requirements Engineering
    Naouar, Douraid
    El Hachem, Jamal
    Voirin, Jean-Luc
    Foisil, Jacques
    Kermarrec, Yvon
    29TH IEEE INTERNATIONAL REQUIREMENTS ENGINEERING CONFERENCE (RE 2021), 2021, : 334 - 344
  • [34] Model-based security testing Deriving test models from artefacts of security engineering
    Lunkeit, Armin
    Schieferdecker, Ina
    2018 IEEE 11TH INTERNATIONAL CONFERENCE ON SOFTWARE TESTING, VERIFICATION AND VALIDATION WORKSHOPS (ICSTW), 2018, : 244 - 251
  • [35] Towards Causal Model-Based Engineering in Automotive System Safety
    Maier, Robert
    Grabinger, Lisa
    Urlhart, David
    Mottok, Jurgen
    MODEL-BASED SAFETY AND ASSESSMENT, IMBSA 2022, 2022, 13525 : 116 - 129
  • [36] Multi-layered Model-based Design Approach towards System Safety and Security Co-engineering
    Quamara, Megha
    Pedroza, Gabriel
    Hamid, Brahim
    24TH ACM/IEEE INTERNATIONAL CONFERENCE ON MODEL-DRIVEN ENGINEERING LANGUAGES AND SYSTEMS COMPANION (MODELS-C 2021), 2021, : 276 - 285
  • [37] A Model-Based Systems Engineering Plugin for Cloud Security Architecture Design
    Dantas Y.G.
    Nigam V.
    Schöpp U.
    SN Computer Science, 5 (5)
  • [38] Model-based security engineering of distributed information systems using UMLsec
    Best, Bastian
    Jurjens, Jan
    Nuseibeh, Bashar
    ICSE 2007: 29TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, PROCEEDINGS, 2007, : 581 - +
  • [39] Sound methods and effective tools for model-based security engineering with UML
    Jürjens, J
    ICSE 05: 27TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, PROCEEDINGS, 2005, : 322 - 331
  • [40] Specification of Information Flow Security Policies in Model-Based Systems Engineering
    Gerking, Christopher
    SOFTWARE TECHNOLOGIES: APPLICATIONS AND FOUNDATIONS, 2018, 11176 : 617 - 632