Cristin-resultat-ID: 1680339
Sist endret: 26. februar 2019, 09:24
NVI-rapporteringsår: 2018
Resultat
Vitenskapelig Kapittel/Artikkel/Konferanseartikkel
2018

Safety Critical Software and Security - How Low Can You Go?

Bidragsytere:
  • Karin Bernsmed
  • Per Håkon Meland og
  • Martin Gilje Jaatun

Bok

2018 IEEE AIAA 37th Digital Avionics Systems Conference (DASC) Proceedings
ISBN:
  • 978-1-5386-4112-5

Utgiver

IEEE (Institute of Electrical and Electronics Engineers)
NVI-nivå 1

Serie

AIAA/IEEE Digital Avionics Systems Conference - Proceedings
ISSN 2155-7195
NVI-nivå 1

Om resultatet

Vitenskapelig Kapittel/Artikkel/Konferanseartikkel
Publiseringsår: 2018
Volum: 37th
Hefte: .
Sider: 210 - 215
ISBN:
  • 978-1-5386-4112-5
Open Access

Importkilder

Scopus-ID: 2-s2.0-85060648342

Klassifisering

Fagfelt (NPI)

Fagfelt: IKT
- Fagområde: Realfag og teknologi

Beskrivelse Beskrivelse

Tittel

Safety Critical Software and Security - How Low Can You Go?

Sammendrag

The safety of aviation software is ensured by performing development according to the DO-178C standard. However, this standard has a blind spot in that it fails to consider software security aspects in development. The Building Security In Maturity Model (BSIMM) comprises a software security framework with 113 software security activities. This model is often used for measuring the maturity of an organization's software security lifecycle. In this paper we evaluate the ability of DO-178C to ensure also software security, by demonstrating how few BSIMM activities you can get away with performing, while remaining compliant with the different DO-178C assurance levels. The results indicate that organizations with very low software security maturity can still be able to perform well in accordance to DO-178C. Based on the results, we propose concrete activities that could be integrated into the DO-178C development process, to strengthen the security of the developed software

Bidragsytere

Karin Bernsmed

  • Tilknyttet:
    Forfatter
    ved Software Engineering, Safety and Security ved SINTEF AS

Per Håkon Meland

  • Tilknyttet:
    Forfatter
    ved Software Engineering, Safety and Security ved SINTEF AS
Aktiv cristin-person

Martin Gilje Jaatun

  • Tilknyttet:
    Forfatter
    ved Software Engineering, Safety and Security ved SINTEF AS
1 - 3 av 3

Resultatet er en del av Resultatet er en del av

2018 IEEE AIAA 37th Digital Avionics Systems Conference (DASC) Proceedings.

Kramer, Kathleen. 2018, IEEE (Institute of Electrical and Electronics Engineers). Vitenskapelig antologi/Konferanseserie
1 - 1 av 1