In recent years, the evolution of road vehicles has strongly required common rules to manage cybersecurity in the automotive industry. In this article, we summarize the ISO/SAE 21434 standard, focusing on the main requirements, work products, and innovations. We identify with an ego-network the possible correlation of ISO/SAE 21434 with the already existing automotive standards, reporting a strong correlation with the ISO 26262 safety standard. Following, we discuss the relationship between safety and security in the automotive field, and between ISO/SAE 21434 and regulation UNECE WP.29 R155. Then we focus on possible limits and implementations of the standard such as the introduction of application methods or specific thresholds for the required security risk analysis. Finally, we propose a structured list of documents that can be used as a landmark to achieve compliance with the cyber-security standard and an example of the application of ISO/SAE 21434 to an electric window power regulator system.

In-Depth Exploration of ISO/SAE 21434 and Its Correlations with Existing Standards

Costantino G;De Vincenzi M;Matteucci I
2022

Abstract

In recent years, the evolution of road vehicles has strongly required common rules to manage cybersecurity in the automotive industry. In this article, we summarize the ISO/SAE 21434 standard, focusing on the main requirements, work products, and innovations. We identify with an ego-network the possible correlation of ISO/SAE 21434 with the already existing automotive standards, reporting a strong correlation with the ISO 26262 safety standard. Following, we discuss the relationship between safety and security in the automotive field, and between ISO/SAE 21434 and regulation UNECE WP.29 R155. Then we focus on possible limits and implementations of the standard such as the introduction of application methods or specific thresholds for the required security risk analysis. Finally, we propose a structured list of documents that can be used as a landmark to achieve compliance with the cyber-security standard and an example of the application of ISO/SAE 21434 to an electric window power regulator system.
2022
Istituto di informatica e telematica - IIT
Automotive
cybersecurity
risk analysis
safety
ISO/SAE 21434
ISO 26262
UNECE WP.29 R155
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14243/418215
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 10
  • ???jsp.display-item.citation.isi??? ND
social impact