Information Security Education: Education in Proactive Information Security 12th IFIP WG 11.8 World Conference, WISE 12 Lisbon, Portugal, June 25–27, 2019
Conference papers
Identifying Security Requirements Body of Knowledge for the Security Systems Engineer
Abstract : The interconnected nature of Industry 4.0–driven operations and systems is introducing the use of new digitized and connected industrial systems. These new connected environments impact system security, requirements engineers to include elicitation of security requirements as functional requirements. Academia and industry argue that systems engineers are not adequately prepared for the security- related activities required in the specification of secure systems. This paper utilizes a cybersecurity framework to create the body of knowledge related to Security Requirements Engineering for a module in systems engineering. The determined body of knowledge show Risk Management, Laws and Regulations, and Human Factors related to security must be considered in the changing technological landscape. Although not all systems engineers must have expert knowledge in this field, all systems engineers must have fundamental knowledge in security practice and the ability to apply systems thinking.
https://hal.inria.fr/hal-02365732 Contributor : Hal IfipConnect in order to contact the contributor Submitted on : Friday, November 15, 2019 - 2:55:55 PM Last modification on : Friday, April 1, 2022 - 2:52:02 PM Long-term archiving on: : Sunday, February 16, 2020 - 6:38:11 PM
Suné von Solms, Annlizé Marnewick. Identifying Security Requirements Body of Knowledge for the Security Systems Engineer. 12th IFIP World Conference on Information Security Education (WISE), Jun 2019, Lisbon, Portugal. pp.59-71, ⟨10.1007/978-3-030-23451-5_5⟩. ⟨hal-02365732⟩