Managing Cybersecurity Risks Using ISO/SAE 21434

Managing Cybersecurity Risks Using ISO/SAE 21434 explains the methods and logic behind the standard and focuses on risk assessment as a basic principle that must be applied in all other areas of 21434. The course introduces risk terminology and provides a step-by-step method to collect information on a product to assess the risk of harm to a product’s stakeholders through cyber-capabilities. It also outlines the Threat Agent Risk Assessment (TARA) tool and describes methods for implementing a TARA to report risk when making decisions detailed in other aspects of ISO/SAE 21434. *Please note, this course does not replace the need to become familiar with the ISO/SAE 21434 standard, it supplements it.

Virtual Training nebo e-Learning?

Máme dostatečnou flexibilitu, takže vybírat můžete jak prezenční termíny, tak online kurzy.

Zkuste živý kurz virtuálně

Target group

This course is geared towards electrical and software engineers, as well as engineers that are directly or indirectly tied to cybersecurity. It would also be appropriate for functional safety managers, product planners, designers, implementers, testers, operations analysts, regulators, and other managers

Target group

What will you learn

  • Identify the work products introduced in ISO/SAE 21434
  • Describe the taxonomy of the work products introduced in the standard, including the relationships of each
  • Describe how the work products described in ISO/SAE 21434 are applied in daily operations
  • Utilize the tools introduced in ISO/SAE 21434

Course structure

Module 1: Risk Assessment

  • Introduction, Risk Management Framework, and Terminology
  • Asset Identification
  • Impact Analysis
  • Attack Feasibility Analysis
  • Attack Path Analysis
  • Threat Scenario Analysis
  • Risk Reporting

Module 2: Product Development

  • The Development Lifecycle in ISO/SAE 21434
  • The Concept Phase
  • The Design Phase (Left side of the V)
  • The Integration and Verification Phase (Right side of the V)
  • Cybersecurity Validation

Module 3: Ongoing Operations

  • Information and Incidents
  • Post Start-of-Production Support

Module 4: Management System

  • Organizational Cybersecurity Management System
  • Product Cybersecurity Plan
  • The Cybersecurity Case
  • Cybersecurity Assessment
  • Supporting Processes
Course structure

Jak nás hodnotí

V čem jsou naše reference výjimečné? Nejsou to jednorázové akce. K nám se lidé vrací rádi a nezavírají před námi dveře.

Podívejte se na úplný seznam referenčních klientů, kteří na nás nedají dopustit.

Vaše hodnocení
*****

Nejste si jisti, zda je tento kurz pro vás?

Zavolejte nám a my vám poradíme.

Jsme vám k dispozici na telefonním čísle +420 222 553 101 vždy od pondělí do pátku: 9:00 - 17:00.

*položky označené hvězdičkou jsou povinné

Chcete získat dárek k narozeninám?