[SystemSafety] List of standards related to Cyber-security / Safety-Security mix?

David Ward david.ward at horiba-mira.com
Thu Sep 14 10:52:14 CEST 2017


Not forgetting that the automotive industry has SAE J3061 for cybersecurity, with ISO/SAE AWI 21434 under development for cybersecurity. Edition 2 of ISO 26262 will acknowledge that the safety and security processes need to interact, and further work on that is being done in the context of the ISO/SAE work.

Dr David Ward
Senior Technical Manager - Functional Safety

HORIBA MIRA Ltd.
Watling Street, Nuneaton
Warwickshire, CV10 0TU, UK
Direct Tel: +44 24 7635 5430
Email: david.ward at horiba-mira.com
www.horiba-mira.com

-----Original Message-----
From: systemsafety [mailto:systemsafety-bounces at lists.techfak.uni-bielefeld.de] On Behalf Of Andrew Banks
Sent: 14 September 2017 09:49
To: 'David MENTRÉ' <dmentre at linux-france.org>; 'The System Safety List' <systemsafety at techfak.uni-bielefeld.de>
Subject: Re: [SystemSafety] List of standards related to Cyber-security / Safety-Security mix?

Hi David

Traditionally, Safety and Security have been separate - although obviously they do interact. To be definitive, any list of relevant standards would need to be very long, and the infamous XKCD cartoon [*] applies.

Nick has already addressed Aerospace... for the rest, Safety has largely settled on IEC 61508 (and derivatives, including ISO 26262 for automotive) but Security is a plethora of competing works-in-progress, although I have long argued that the ISO 270xx family (ex BS 7799) is probably adequate...

At the heart, though, needs to be a resilient development process (eg ISO
15288 for systems, ISO 12207 for software)

Kind regards
Andrew


[*]https://xkcd.com/927/


-----Original Message-----
From: systemsafety
[mailto:systemsafety-bounces at lists.techfak.uni-bielefeld.de] On Behalf Of David MENTRÉ
Sent: 14 September 2017 08:28
To: The System Safety List
Subject: [SystemSafety] List of standards related to Cyber-security / Safety-Security mix?

Hello,

Does anybody maintain a list of standards or standardization work on Safety-Security mix and Cyber-security with impact on Safety?

Best regards,
david
_______________________________________________
The System Safety Mailing List
systemsafety at TechFak.Uni-Bielefeld.DE

_______________________________________________
The System Safety Mailing List
systemsafety at TechFak.Uni-Bielefeld.DE

HORIBA MIRA Ltd

Watling Street, Nuneaton, Warwickshire, CV10 0TU, England
Registered in England and Wales No. 9626352
VAT Registration  GB 100 1464 84

This email and any files transmitted with it are confidential and intended solely for the use of the individual or entity to whom they are addressed. If you are not the named addressee you should not disseminate, distribute or copy this e-mail. Please notify the sender immediately by e-mail if you have received this e-mail by mistake and delete this e-mail from your system. If you are not the intended recipient you are notified that disclosing, copying, distributing or taking any action in reliance on the contents of this information is strictly prohibited.


More information about the systemsafety mailing list