{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,1,22]],"date-time":"2025-01-22T05:13:39Z","timestamp":1737522819271,"version":"3.33.0"},"reference-count":35,"publisher":"Walter de Gruyter GmbH","issue":"9","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,9,26]]},"abstract":"<jats:title>Zusammenfassung<\/jats:title>\n               <jats:p>\u201eSecurity by Design\u201c ist der Begriff f\u00fcr die Verlagerung von Cybersecurity-\u00dcberlegungen von den Endnutzern eines Systems auf dessen Planer und Realisierer im Engineering. Um die Last auf den Schultern der Endnutzer zu verringern, m\u00fcssen Security-Entscheidungen nicht nur w\u00e4hrend der Entwicklung getroffen werden, sondern auch in einer Weise, die f\u00fcr Dritte nachvollziehbar ist. Planer von industriellen Automatisierungssystemen (ICS) verf\u00fcgen jedoch in der Regel weder \u00fcber Security-Expertise noch \u00fcber Zeit f\u00fcr das Security-Engineering. Die in dieser Arbeit vorgestellte Methode \u201eSecurity by Design Decisions\u201c soll sie in die Lage versetzen, Security-Entscheidungen trotzdem selbstst\u00e4ndig zu identifizieren, zu treffen und zu begr\u00fcnden. Kernelemente der Methode sind funktionsbasierte Diagramme sowie vordefinierte Bibliotheken mit typischen Funktionen und deren Security-Parametern. Die als Software-Demonstrator implementierte Methode wurde mit HIMA, einem deutschen Spezialisten f\u00fcr sicherheitsgerichtete Automatisierungsl\u00f6sungen, validiert. Die Ergebnisse zeigen, dass Planer mit ihrer Hilfe Security-Entscheidungen identifizieren, treffen und nachvollziehbar dokumentieren k\u00f6nnen, die sie sonst nicht (bewusst) getroffen h\u00e4tten \u2013 schnell und mit wenig Security-Expertise. Die Methode ist auch gut geeignet, um weniger erfahrenen Personen Wissen \u00fcber Security-Entscheidungen zug\u00e4nglich zu machen. Zusammengefasst k\u00f6nnen mit der Methode \u201eSecurity by Design Decisions\u201c mehr Personen in k\u00fcrzerer Zeit zur \u201eSecurity by Design\u201c eines ICS beitragen.<\/jats:p>","DOI":"10.1515\/auto-2023-0084","type":"journal-article","created":{"date-parts":[[2023,9,8]],"date-time":"2023-09-08T10:42:19Z","timestamp":1694169739000},"page":"759-778","source":"Crossref","is-referenced-by-count":0,"title":["Nachvollziehbare Security by Design-Entscheidungen f\u00fcr Automatisierungssysteme mittels funktionsbasierter Diagramme und Security-Bibliotheken"],"prefix":"10.1515","volume":"71","author":[{"given":"Sarah","family":"Fluchs","sequence":"first","affiliation":[{"name":"admeritia GmbH , Elisabeth-Selbert-Str. 1, 40764 Langenfeld , Germany"},{"name":"Helmut-Schmidt-Universit\u00e4t\/Universit\u00e4t der Bundeswehr Hamburg , Hamburg , Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Emre","family":"Ta\u015ftan","sequence":"additional","affiliation":[{"name":"Hochschule Pforzheim , Pforzheim , Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tobias","family":"Trumpf","sequence":"additional","affiliation":[{"name":"HIMA Paul Hildebrandt GmbH , Br\u00fchl , Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Alexander","family":"Horch","sequence":"additional","affiliation":[{"name":"HIMA Paul Hildebrandt GmbH , Br\u00fchl , Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rainer","family":"Drath","sequence":"additional","affiliation":[{"name":"Hochschule Pforzheim , Pforzheim , Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Alexander","family":"Fay","sequence":"additional","affiliation":[{"name":"Helmut-Schmidt-Universit\u00e4t\/Universit\u00e4t der Bundeswehr Hamburg , Hamburg , Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"374","published-online":{"date-parts":[[2023,9,8]]},"reference":[{"key":"2025012111101628310_j_auto-2023-0084_ref_002","unstructured":"J. Easterly and E. Goldstein, Stop Passing the Buck on Cybersecurity: Why Companies Must Build Safety into Tech Products, Foreign Affairs, 2023 [Online]. Available at: https:\/\/www.foreignaffairs.com\/united-states\/stop-passing-buck-cybersecurity."},{"key":"2025012111101628310_j_auto-2023-0084_ref_003","unstructured":"European Commission, Proposal for a Regulation on Horizontal Cybersecurity Requirements for Products with Digital Elements (COM\/2022\/454): Cyber Resilience Act (CRA), 2022 [Online]. Available at: https:\/\/digital-strategy.ec.europa.eu\/en\/library\/cyber-resilience-act [accessed: Mar. 29, 2023]."},{"key":"2025012111101628310_j_auto-2023-0084_ref_004","unstructured":"Biden-Harris Administration, National Cybersecurity Strategy, Washington, USA, 2023 [Online]. Available at: https:\/\/www.whitehouse.gov\/wp-content\/uploads\/2023\/03\/National-Cybersecurity-Strategy-2023.pdf."},{"key":"2025012111101628310_j_auto-2023-0084_ref_005","unstructured":"CISA, FBI, NSA, et al.., Shifting the Balance of Cybersecurity Risk: Principles and Approaches for Security by Design and -Default, 2023 [Online]. Available at: https:\/\/www.cisa.gov\/resources-tools\/resources\/secure-by-design-and-default [accessed: Apr. 25, 2023]."},{"key":"2025012111101628310_j_auto-2023-0084_ref_006","unstructured":"M. Hollender, Collaborative process Automation Systems, Research Triangle Park, NC, ISA, 2009."},{"key":"2025012111101628310_j_auto-2023-0084_ref_007","unstructured":"Engineering and Execution of PCT Projects in Process Industry, NA35, NAMUR e. V., Leverkusen, Germany, 2019."},{"key":"2025012111101628310_j_auto-2023-0084_ref_008","doi-asserted-by":"crossref","unstructured":"P. Kieseberg and E. Weippl, \u201cSecurity challenges in cyber-physical production systems,\u201d in Lecture Notes in Business Information Processing, Software Quality: Methods and Tools for Better Software and Systems, D. Winkler, S. Biffl, and J. Bergsmann, Eds., Cham, Springer International Publishing, 2018, pp.\u00a03\u201316.","DOI":"10.1007\/978-3-319-71440-0_1"},{"key":"2025012111101628310_j_auto-2023-0084_ref_009","doi-asserted-by":"crossref","unstructured":"M. Eckhart, A. Ekelhart, A. Luder, S. Biffl, and E. Weippl, \u201cSecurity development lifecycle for cyber-physical production systems,\u201d in IECON 2019 \u2013 45th Annual Conference of the IEEE Industrial Electronics Society, Lisbon, Portugal, 2019, pp.\u00a03004\u20133011.","DOI":"10.1109\/IECON.2019.8927590"},{"key":"2025012111101628310_j_auto-2023-0084_ref_010","doi-asserted-by":"crossref","unstructured":"J. F. Ruiz, A. Ma\u00f1a, and C. Rudolph, \u201cAn integrated security and systems engineering process and modelling Framework,\u201d Comput. J., vol.\u00a058, no.\u00a010, pp.\u00a02328\u20132350, 2015. https:\/\/doi.org\/10.1093\/comjnl\/bxu152.","DOI":"10.1093\/comjnl\/bxu152"},{"key":"2025012111101628310_j_auto-2023-0084_ref_011","unstructured":"S. Fluchs, R. Drath, and A. Fay, \u201cA security decision base: how to prepare security by design decisions for industrial control systems,\u201d in Proceedings of 17th EKA (Fachtagung \u201cEntwurf Komplexer Automatisierungssysteme\u201d), Germany, Magdeburg, 2022."},{"key":"2025012111101628310_j_auto-2023-0084_ref_012","unstructured":"NIST, Framework for Improving Critical Infrastructure Security, Version 1.1, 2018 [Online]. Available at: https:\/\/nvlpubs.nist.gov\/nistpubs\/CSWP\/NIST.CSWP.04162018.pdf [accessed: Mar. 29, 2023]."},{"key":"2025012111101628310_j_auto-2023-0084_ref_013","unstructured":"D. Peterson, Insecure by Design\/Secure by Design [Online]. Available at: https:\/\/dale-peterson.com\/2013\/11\/04\/insecure-by-design-secure-by-design\/ [accessed: May. 9, 2022]."},{"key":"2025012111101628310_j_auto-2023-0084_ref_014","unstructured":"Directive (EU) 2022\/2555 on Measures for a High Common Level of Cybersecurity across the Union: NIS 2 Directive, 2022 [Online]. Available at: https:\/\/eur-lex.europa.eu\/legal-content\/EN\/TXT\/?uri=CELEX%3A32022L2555&qid=1680351576163 [accessed: Apr. 1, 2023]."},{"key":"2025012111101628310_j_auto-2023-0084_ref_015","unstructured":"Directive (EU) 2022\/2557 on the Resilience of Critical Entities: RCE Directive, 2022 [Online]. Available at: https:\/\/eur-lex.europa.eu\/legal-content\/EN\/TXT\/?uri=CELEX%3A32022L2557&qid=1680351659300 [accessed: Apr. 1, 2023]."},{"key":"2025012111101628310_j_auto-2023-0084_ref_016","unstructured":"Presidential Policy Directive -- Critical Infrastructure Security and Resilience: PPD-21, 2013 [Online]. Available at: https:\/\/obamawhitehouse.archives.gov\/the-press-office\/2013\/02\/12\/presidential-policy-directive-critical-infrastructure-security-and-resil [accessed: Apr. 1, 2023]."},{"key":"2025012111101628310_j_auto-2023-0084_ref_017","doi-asserted-by":"crossref","unstructured":"Y. Cherdantseva, P Burnap, A. Blyth, et al.., \u201cA review of cyber security risk assessment methods for SCADA systems,\u201d Comput. Secur., vol.\u00a056, pp.\u00a01\u201327, 2016. https:\/\/doi.org\/10.1016\/j.cose.2015.09.009.","DOI":"10.1016\/j.cose.2015.09.009"},{"key":"2025012111101628310_j_auto-2023-0084_ref_018","doi-asserted-by":"crossref","unstructured":"L. Lemaire, J. Vossaert, B. de Decker, and V. Naessens, \u201cAn assessment of security analysis Tools for cyber-physical systems,\u201d in Lecture Notes in Computer Science, Risk Assessment and Risk-Driven Quality Assurance, J. Gro\u00dfmann, M. Felderer, and F. Seehusen, Eds., Cham, Springer International Publishing, 2017, pp.\u00a066\u201381.","DOI":"10.1007\/978-3-319-57858-3_6"},{"key":"2025012111101628310_j_auto-2023-0084_ref_019","doi-asserted-by":"crossref","unstructured":"S. Fluchs and H. Rudolph, \u201cWie OT-Security-Engineering eine Ingenieurwissenschaft wird \u2013 ein Denkmodell und ein Datenmodell [Making OT Security Engineering an Engineering Discipline \u2013 a Thought Model and a Data Model] (in German),\u201d atp Magazin, vol.\u00a061, pp.\u00a074\u201386, 2019. https:\/\/doi.org\/10.17560\/atp.v61i8.2410.","DOI":"10.17560\/atp.v61i8.2410"},{"key":"2025012111101628310_j_auto-2023-0084_ref_020","unstructured":"Object Management Group (OMG), Unified Modeling Language (UML) Specification v2.5.1, 2017 [Online]. Available at: https:\/\/www.omg.org\/spec\/UML\/2.5.1\/About-UML\/."},{"key":"2025012111101628310_j_auto-2023-0084_ref_021","unstructured":"Department of Information Engineering and Computer Science, University of Trento, The Tropos Methodology [Online]. Available at: http:\/\/www.troposproject.eu\/node\/93."},{"key":"2025012111101628310_j_auto-2023-0084_ref_022","unstructured":"E. S. Yu, \u201cSocial modeling and i*,\u201d in Conceptual Modeling: Foundations and Applications, A. T. Borgida, V. K. Chaudhri, P. Giorgini, and E. S. Yu, Eds., Berlin, Heidelberg: Springer Berlin Heidelberg, 2009, pp.\u00a099\u2013121 [Online]. Available at: http:\/\/link.springer.com\/10.1007\/978-3-642-02463-4_7 [accessed: Mar. 14, 2022]."},{"key":"2025012111101628310_j_auto-2023-0084_ref_023","doi-asserted-by":"crossref","unstructured":"A. Morkevicius, L. Bisikirskiene, and G. Bleakley, \u201cUsing a systems of systems modeling approach for developing Industrial Internet of Things applications,\u201d in 2017 12th System of Systems Engineering Conference (SoSE), 2017, pp.\u00a01\u20136. [Online]. Available at: http:\/\/ieeexplore.ieee.org\/document\/7994942\/ [accessed: Mar. 20, 2022].","DOI":"10.1109\/SYSOSE.2017.7994942"},{"key":"2025012111101628310_j_auto-2023-0084_ref_024","doi-asserted-by":"crossref","unstructured":"L. Lemaire, J. Lapon, B. de Decker, and V. Naessens, \u201cA SysML extension for security analysis of industrial control systems,\u201d in 2nd International Symposium for ICS & SCADA Cyber Security Research 2014, 2014 [Online]. Available at: http:\/\/ewic.bcs.org\/content\/ConWebDoc\/53223 [accessed: Mar. 20, 2022].","DOI":"10.14236\/ewic\/ics-csr2014.1"},{"key":"2025012111101628310_j_auto-2023-0084_ref_025","unstructured":"S. Fluchs and H. Rudolph, Making OT security engineering deserve its name \u2013 a guide to security engineering for OT engineers Control Global, 2019 [Online]. Available at: https:\/\/www.controlglobal.com\/network\/industrial-networks\/article\/11299219\/making-ot-security-engineering-deserve-its-name [accessed: Aug. 17, 2023]."},{"key":"2025012111101628310_j_auto-2023-0084_ref_026","unstructured":"S. Fluchs, \u201cFor security, think functions \u2013 not systems, fluchsfriction,\u201d 2020 [Online]. Available at: https:\/\/fluchsfriction.medium.com\/for-security-think-functions-not-systems-b0e08a9d89b6."},{"key":"2025012111101628310_j_auto-2023-0084_ref_027","doi-asserted-by":"crossref","unstructured":"M. Glawe, C. Tebbe, A. Fay, and K.-H. Niemann, \u201cKnowledge-based engineering of automation systems using ontologies and engineering data,\u201d in Proceedings of the 7th International Joint Conference on Knowledge Discovery, Knowledge Engineering and Knowledge Management, 2015, pp.\u00a0291\u2013300 [Online]. Available at: http:\/\/www.scitepress.org\/DigitalLibrary\/Link.aspx?doi=10.5220\/0005614502910300 [accessed: Mar. 3, 2021].","DOI":"10.5220\/0005614502910300"},{"key":"2025012111101628310_j_auto-2023-0084_ref_028","unstructured":"C. Tebbe, Durchg\u00e4ngiges Wissensmanagement von OT-Security-Wissen im Lebensweg von Produktionsanlagen, Hamburg, Helmut Schmidt Universit\u00e4t\/Universit\u00e4t der Bundeswehr Hamburg, 2021."},{"key":"2025012111101628310_j_auto-2023-0084_ref_029","doi-asserted-by":"crossref","unstructured":"M. Eckhart, A. Ekelhart, and E. R. Weippl, \u201cAutomated security risk identification using AutomationML-based engineering data,\u201d IEEE Trans. Dependable Secure Comput., vol.\u00a019, pp.\u00a01\u20131672, 2020. https:\/\/doi.org\/10.1109\/TDSC.2020.3033150.","DOI":"10.1109\/TDSC.2020.3033150"},{"key":"2025012111101628310_j_auto-2023-0084_ref_030","unstructured":"MITRE, ATT&CK for ICS [Online]. Available at: https:\/\/attack.mitre.org\/matrices\/ics\/ [accessed: May. 29, 2022]."},{"key":"2025012111101628310_j_auto-2023-0084_ref_031","doi-asserted-by":"crossref","unstructured":"S. Fluchs, R. Drath, and A. Fay, \u201cEvaluation of visual notations as a Basis for ICS security design decisions,\u201d IEEE Access, vol.\u00a011, pp.\u00a09967\u20139994, 2023. https:\/\/doi.org\/10.1109\/ACCESS.2023.3238326.","DOI":"10.1109\/ACCESS.2023.3238326"},{"key":"2025012111101628310_j_auto-2023-0084_ref_032","doi-asserted-by":"crossref","unstructured":"A. A. Bochman and S. G. Freeman, Countering Cyber Sabotage. Introducing Consequence-Driven, Cyber-Informed Engineering (CCE), 2021st ed., CRC Press, Taylor & Francis Group, 2021.","DOI":"10.4324\/9780367491161"},{"key":"2025012111101628310_j_auto-2023-0084_ref_033","doi-asserted-by":"crossref","unstructured":"S. Fluchs, E. Tastan, M Mertens, et al.., \u201cSecurity by design decisions for automation systems. Part 2: concept for integrating security decisions into the engineering Workflow [in German],\u201d atp Magazin, vol.\u00a063, pp.\u00a048\u201358, 2022. https:\/\/doi.org\/10.17560\/atp.v63i11-12.2643.","DOI":"10.17560\/atp.v63i11-12.2643"},{"key":"2025012111101628310_j_auto-2023-0084_ref_034","doi-asserted-by":"crossref","unstructured":"S. Fluchs, E. Tastan, M Mertens, et al.., \u201cSecurity by design for automation systems. Part 1: explanation of terms and analysis of existing approaches [in German],\u201d atp Magazin, vol.\u00a063, pp.\u00a054\u201361, 2022. https:\/\/doi.org\/10.17560\/atp.v63i9.2620.","DOI":"10.17560\/atp.v63i9.2620"},{"key":"2025012111101628310_j_auto-2023-0084_ref_035","doi-asserted-by":"crossref","unstructured":"S. Fluchs, E. Tasten, M. Mertens, A. Horch, R. Drath, and A. Fay, \u201cSecurity by design integration mechanisms for industrial control systems,\u201d in IECON 2022: 48th Annual Conference of the IEEE Industrial Electronics Society 2022, Brussels, Belgium, 2022.","DOI":"10.1109\/IECON49645.2022.9968406"},{"key":"2025012111101628310_j_auto-2023-0084_ref_001","unstructured":"German Federal Ministry of Education and Research (BMBF), IDEAS \u2013 Integrierte Datenmodelle for the Engineering of Automation Security. Project overview (in German), 2021 [Online]. Available at: https:\/\/www.forschung-it-sicherheit-kommunikationssysteme.de\/projekte\/ideas."}],"container-title":["at - Automatisierungstechnik"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.degruyter.com\/document\/doi\/10.1515\/auto-2023-0084\/xml","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/www.degruyter.com\/document\/doi\/10.1515\/auto-2023-0084\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,1,21]],"date-time":"2025-01-21T11:10:46Z","timestamp":1737457846000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.degruyter.com\/document\/doi\/10.1515\/auto-2023-0084\/html"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,9,1]]},"references-count":35,"journal-issue":{"issue":"9","published-online":{"date-parts":[[2023,9,8]]},"published-print":{"date-parts":[[2023,9,26]]}},"alternative-id":["10.1515\/auto-2023-0084"],"URL":"https:\/\/doi.org\/10.1515\/auto-2023-0084","relation":{},"ISSN":["0178-2312","2196-677X"],"issn-type":[{"type":"print","value":"0178-2312"},{"type":"electronic","value":"2196-677X"}],"subject":[],"published":{"date-parts":[[2023,9,1]]}}}