Automotive Cybersecurity Training & Certification Program
Objectives
After successfully completing Automotive Cybersecurity Training & Certification Program in accordance with ISO 21434, participants will be able to:
- Become familiar with the jargon utilized in the realm of automotive cyber security
- Identify the deliverables (work products) presented in ISO/SAE 21434
- Describe the taxonomy of work products introduced in the standard
- Describe how the work products described in ISO/SAE 21434 are applied in daily operations
- Utilize the tools introduced in ISO/SAE 21434
- Understand the fundamentals of Cryptography and Implementation of Cybersecurity in automotive projects
Online open book exam included in the course price
Utbildningsformer
Remote
Längd
3 dagar
Pris
22450 kr
Certifikat/Diplom/Intyg
Ja
Target Participants
- Security manager, product manager or project manager, Process Managers, Quality managers
- System engineer, software engineer, hardware engineer, test engineer
- Functional safety engineers — who want to understand how they are impacted by Cybersecurity
Training agenda: Automotive Cybersecurity Training & Certification Program in accordance with ISO 21434
Day 1:
- Automotive Cyber security introduction
- What is cyber security
- Why it is important
- Terminology and definitions
- Case studies — videos
- Security vs Safety
- Fundamentals Of Cybersecurity
- Cyber Security Attributes (Authenticity, Integrity, Confldentiality, Availability)
- Defense in Depth
- Vehicle Architecture
- Vulnerabilities
- Automotive Cybersecurity and Layers Of Protection
- Fundamental Vehicle Cybersecurity Protections
- Layered Approach
- Standards Development and Best Practices
- SAE J3061
- IEC 62443, Relationship to ISO 31000 risk managernent
- security Management Systems: ISO/IEC 27001, TISAX, UNECE, OMS, RMS
- UNECE WP .29 regulation No. [1551 (CSMS); No. [156] (SUMS)
- Definition of a CSMS (Cybersecurity Management System) and relation to ISMS (Information
- Cybersecurity Management System)
- Realization Of security in automotive
- Categories Of cryptography
- Kirchhoff Principle
- Hash
- Symmetric Cryptography
- Asymmetric Cryptography
- Digital Signatures
- Digital Certificates
Day 2:
- ISO 21434 structure:
- Structure Of the standard including provisions, objectives, requirements, output and annexes
- Example for a Cybersecurity Interface Agreement (CIA)
- Concept phase
- Definition of items, security principles, identification of security goals, and development of cybersecurity requirements.
- The seven steps of conducting a risk assessment.
- Illustration of how to assess risks using TARA and strategies for mitigating those risks.
- A hands-on activity that guides you through each step of a risk assessment, utilizing a TARA template.
- Product development and validation
- Reference to the V Model, activities on both sides of the V Model, assessments Of system, software and hardware development, verification and validation
- Post-Developrnent Phases (Clauses 10-13)
- Production, Operation, Maintenance, and Decommissioning
- Validation at Vehicle Level & Release for Post-Development (Clauses 9.2 & 9.3)
- Supporting Processes (Clause 14)
Day 3:
- Security at hardware level
- HSM, SHE modules
- Microcontrollers
- Security features and its realization with use cases
- Key management and storage use cases
- Secure unlock
- Secure boot
- Secure download
- Secure memory
- Secure onboard communication
- Intrusion detection system
- OTA
- Cybersecurity Testing: Vulnerability scanning, Pen testing and Fuzz testing