All tasks except regarding the IDPS were performed for automotive OEMs.
Security Engineering
- Performing threat and risk analyses for vehicle functions and components for secure vehicle
development according to ISO/IEC 21434
- Performing higher efficiency threat and risk analyses for a vehicle component
Security Methodology
- Creating a template and a manual for performing higher efficiency threat and risk analyses
- Creating method descriptions incl. process charts for performing threat and risk analyses as
well as functional security tests, penetration tests and vulnerability tests
Integration of a Security Function
- Function: authentic signal-based on-board communication
- Technical and organisational integration support for ECU projects, e.g., consulting the function
responsible as well as component project leaders and their suppliers
- Developing and managing the function?s software, e.g., requirements engineering, bug analysis
and management
- Analysing errors at vehicle testing
V2X Communication Security
- Supporting in writing a Common Criteria (ISO/IEC 15408) Security Target
- Participating in creating a Common Criteria Protection Profile for vehicle stations in the C2C
Communication Consortium
- Participating in creating EU?s Annex 8 of C-ITS CPOC Protocol (esp. Section 19.2.1)
- Preparing the evaluation and certification (Common Criteria) of vehicle communication units
- Reviewing and commenting the EU?s Security Policy for improvement
Intrusion Detection and Prevention System (Prevention Side)
- Creating a technical product concept for a VSOC (Vehicle Security Operations Center)
- Reviewing other technical concepts for the IDPS that were created at the same time