Zur Hauptnavigation wechseln Zur Suche wechseln Zum Hauptinhalt wechseln

A ThreatGet-Based Framework for Aligning System Security with the Cyber Resilience Act

    Publikation: Beitrag in Buch oder TagungsbandVortrag mit Beitrag in TagungsbandBegutachtung

    Abstract

    The Cyber Resilience Act (CRA) is a recently published EU regulation that introduces guidelines to ensure the cybersecurity of digital components in Europe. It demands that manufacturers ensure the cybersecurity of products containing software and digital components. This represents a critical step toward advancing cybersecurity by enabling the integration of secure components throughout the system engineering lifecycle. As part of the AIMS5.0 project, we recognise the importance of the CRA in securing the future of digital components across Europe. Furthermore, we introduce a ThreatGet-based cybersecurity framework to facilitate alignment with the CRA. This paper presents the proposed framework, which integrates ThreatGet’s capabilities with the CRA’s key requirements and principles. While it does not aim to prove full compliance, it provides valuable support in guiding cybersecurity activities in the right direction. A smart indoor food production system is used as a case study to demonstrate the framework’s effectiveness and illustrate how ThreatGet can help ensure that cybersecurity activities within such systems’ lifecycle are consistent with the CRA context.
    OriginalspracheEnglisch
    TitelComputer Safety, Reliability, and Security. SAFECOMP 2025
    UntertitelCoC3CPS, DECSoS, SASSUR, SENSEI, SRToITS, and WAISE, Stockholm, Sweden, September 9, 2025, Proceedings
    Redakteure/-innenMartin Törngren, Elena Troubitsyna, Barbara Gallina, Erwin Schoitsch, Friedemann Bitsch
    Seiten101-114
    Seitenumfang14
    Band15955
    ISBN (elektronisch)978-3-032-02018-5
    DOIs
    PublikationsstatusVeröffentlicht - 21 Aug. 2025
    VeranstaltungComputer Safety, Reliability, and Security. SAFECOMP 2025: 20th International Workshop on Dependable Smart Embedded Cyber-Physical Systems and Systems-of-Systems - Sweden, Stockholm, Schweden
    Dauer: 9 Sept. 202512 Sept. 2025
    https://safecomp2025.se/

    Publikationsreihe

    Name Lecture Notes in Computer Science
    Herausgeber (Verlag)Springer
    Band15955
    ISSN (Print)0302-9743
    ISSN (elektronisch)1611-3349

    Workshop

    WorkshopComputer Safety, Reliability, and Security. SAFECOMP 2025
    KurztitelDECSoS 2025
    Land/GebietSchweden
    StadtStockholm
    Zeitraum9/09/2512/09/25
    Internetadresse

    UN SDGs

    Dieser Output leistet einen Beitrag zu folgendem(n) Ziel(en) für nachhaltige Entwicklung

    1. SDG 2 – Kein Hunger
      SDG 2 – Kein Hunger

    Research Field

    • Dependable Systems Engineering

    Fingerprint

    Untersuchen Sie die Forschungsthemen von „A ThreatGet-Based Framework for Aligning System Security with the Cyber Resilience Act“. Zusammen bilden sie einen einzigartigen Fingerprint.

    Diese Publikation zitieren