Security of Embedded Systems Using “ISO 27002” Standards
نویسندگان
چکیده
Embedded Systems are electronic products that contain one or more than one microprocessor and software either programmable or fixed in capability, designed to perform some dedicated function within a large entity. Embedded Systems are increasingly employed in critical sectors such as in Life Critical Systems, Financial Infrastructure, Information Systems, Transportation Systems, Consumer Products and Avionics etc. Their inadvertent and malicious failures can cause dreadful consequences. The situation has become more critical due to rapid change in functional requirements of Embedded Systems particularly in terms of communication and interconnection. High interconnectivity between public networks such as internet and Embedded Devices has become a massive security challenge by which Embedded Systems can be directly attacked. This paper examines the security dimensions of Embedded Systems by means of baseline security intents of Embedded Systems and Information Security standard ISO/IEC 27002 which are basically safeguards to avoid and counteract security risks related to computer software or personal property. It is an Internationally-recognized standard which is cogently designed around a group of interrelated security controls, presented as a proposed solution in this paper to address the aforementioned difficulties of Embedded Systems. This standard is explicitly concerned with the security of all forms of information and equally beneficial for all types and sizes of organizations that handles and be contingent on information.
منابع مشابه
Security level analysis of academic information systems based on standard ISO 27002: 2003 using SSE-CMM
this research was conducted to find out the level of information security in organization to give recommendations improvements in information security management at the organization. This research uses the ISO 27002 by involving the entire clause that exists in ISO 27002 check-lists. Based on the analysis results, 13 objective controls and 43 security controls were scattered in 3 clauses of ISO...
متن کاملToward an Effective Information Security Risk Management of Universities’ Information Systems Using Multi Agent Systems, Itil, Iso 27002,Iso 27005
Universities in the public and private sectors depend on information technology and information systems to successfully carry out their missions and business functions. Information systems are subject to serious threats that can have adverse effects on organizational operations and assets, and individuals by exploiting both known and unknown vulnerabilities to compromise the confidentiality, in...
متن کاملISO/IEC 27000, 27001 and 27002 for Information Security Management
With the increasing significance of information technology, there is an urgent need for adequate measures of information security. Systematic information security management is one of most important initiatives for IT management. At least since reports about privacy and security breaches, fraudulent accounting practices, and attacks on IT systems appeared in public, organizations have recognize...
متن کاملTrust-Based Security Level Evaluation Using Bayesian Belief Networks
Security is not merely about technical solutions and patching vulnerabilities. Security is about trade-offs and adhering to realistic security needs, employed to support core business processes. Also, modern systems are subject to a highly competitive market, often demanding rapid development cycles, short life-time, short time-to-market, and small budgets. Security evaluation standards, such a...
متن کاملAn Overview of Laws and Standards for Health Information Security and Privacy
In the complex technological world that healthcare organizations and their business associates operate, there exist security threats and attacks which render individually identifiable health information vulnerable. Laws exist to ensure that healthcare providers take practical measures to address the security and privacy needs of health information. There are also standards that assist healthcar...
متن کامل