Enabling FuSE Security Objectives by Leveraging Cyber Survivability Methods

Author:

Papke Barry1,Kratzke Ron1,Span Martin (Trae)2,Shevchenko Nataliya (Natasha)3

Affiliation:

1. Dassault Systemes 5700 Tennyson Parkway, Suite 180 Plano TX 75024

2. Colorado State University 6029 Campus Delivery Fort Collins CO 80523‐6029

3. Software Engineering Institute 4500 Fifth Ave. Pittsburgh PA 15213

Abstract

AbstractThe importance of system security continues to grow as systems become more complex, more connected, and more vulnerable. The INCOSE Vision 2035 sets goals for systems engineering (SE) as a discipline in enabling engineering solutions for a better world: “By 2035, cybersecurity will be as foundational a perspective in systems design as system performance and safety are today” (INCOSE, 2024). A key objective of the INCOSE Future of Systems Engineering (FuSE) Security Foundations Roadmap is to recognize system security as a fundamental part of the mission, integrated into the system architecture, and not “bolted‐on” as a separate subsystem or set of features in the detailed design. To achieve this, systems engineering must address system security early in the system lifecycle, during the mission analysis and concept development phase and ensure it is addressed as a functional requirement throughout the systems engineering lifecycle. System security needs must be treated as fundamental system capability.The INCOSE FuSE Security foundations roadmap identifies six (6) objectives and eleven (11) foundational concepts necessary to achieve the FuSE vision for system security (Dove, et al., 2021). Five of the objectives and five of the foundational concepts are directly related to systems acquisition and engineering lifecycle processes. The five key foundational concepts are: Stakeholder Alignment, Security as a Capability, Security as a Functional Requirement, Loss Driven Engineering and Modeled Trustworthiness.The Operational Test and Evaluation (OT&E) community has extensive cyber assessment and execution processes mandated through numerous Department of Defense (DoD) and individual service policies, directives and guidebooks. This paper studies several of the cybersecurity assessment and process guidebooks, analyzing the processes and methods to identify areas where systems engineering should be responsible, and which SE activities and outputs are needed to enable the requirements of each guidebook.This paper examines six OT&E cyber security guidebooks, and the methods and processes they describe to achieve system security in relation to the five foundation concepts. In addition to their test and evaluation processes, each describes systems engineering processes, activities and outputs that could be used to form the initial foundation of a system security technical process.While the original INCOSE vision statement uses the term “cybersecurity,” the FuSE Security initiative is adopting the term “system security” to emphasize that this is a system engineering responsibility as opposed to software engineering or information technology task. As a result, the analysis of the cybersecurity guidebooks will be in the context of “system security.”

Publisher

Wiley

Reference20 articles.

1. Air Force Operational Test and Evaluation Center. (2022 April).Mission Based Risk Assessment for Cyber (MRAP-C). Retrieved fromhttps://www.my.af.mil/gcss-af/USAF/site/MRAP-C

2. Bryant B.(2023 Oct).The Unified Risk Assessment and Measurement System Guidebook. Retrieved from Modern Technical Solutions Inc.:www.mtsi-va.com/weapon-systems-cybersecurity/

3. Bryant W.(2020-21). Developing the Fundamentals of Aircraft Cyber Combat Survivability.Aircraft Survivability.

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3