Abstract

The objective of this paper is the definition of a new methodology for carrying out security risk assessment in the air traffic management (ATM) domain so as to enhance security awareness and integrate secure and cost-effective design objectives. This process is carried out by modelling the system, identifying the assets, threats and vulnerabilities, prioritizing the threats and proposing cost-effective countermeasures for the weaknesses found. ATM security is concerned with securing ATM assets in order to prevent threats and limit their effects on the overall aviation network. This effect limitation can be achieved by removing the vulnerability from the system and/or increasing the tolerance in case of component failures due to attacks. The security risk assessment methodology proposed is based on what is currently being done by the industry (the International Civil Aviation Organization (ICAO) and the International Standard Organization (ISO), etc.).

Highlights

  • Concerns about security have been raised in the past, but the tragic events of 9/11 thrust the issue of security into public domain as never before and set in motion responses that are re-shaping transportation in unforeseen ways.Physical security of airports has been the focus of security concerns for many decades

  • Hijacking aircraft came to the fore in the 1970s, when terrorist groups in the Middle East exploited the lack of security to commandeer planes for ransom and publicity

  • The airline industry and the international regulatory body, the ICAO, established screening procedures for passengers and bags. This process seems to have worked in the short-run, at least, with reductions in hijackings, terrorists changed their tactics by placing bombs in un-accompanied luggage and packages

Read more

Summary

Introduction

Concerns about security have been raised in the past, but the tragic events of 9/11 thrust the issue of security into public domain as never before and set in motion responses that are re-shaping transportation in unforeseen ways. These and other air traffic control issues are being addressed by the introduction of new communication methods and technologies, which includes the use of internet-based solutions The use of these increases the role of cyber security and exposes numerous vulnerabilities that do not exist in today’s more closed, proprietary, civil aviation systems. Since the terrorist attacks of September 11, 2001, people have been paying more attention to facility security and safety issues Security measures, such as those for anti-terrorism, must be considered with regard to the level of protection deemed appropriate, and while emphasizing the integrated design process, identifying areas of synergy and potential conflicts between safety and security approaches, and highlighting cost-effectiveness opportunities within certain security and safety strategies. - Is complementary with the risk assessment methodology currently being developed within SESAR and other EU projects in ATM security

The Need for a DORATHEA Security Risk Assessment Methodology
Identification of all Potential Security Hazards
Identification of a Security Hazard’s Impact
Security Objectives’ Identification
Very Frequent
Case Study Application
SecFHA
PSSecA
Findings
Conclusions
Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call