Towards a Secure DevOps Approach for Cyber-Physical Systems : An Industrial Perspective
Abrahamsson, P., Botterweck, G., Ghanbari, H., Jaatun, M. G., Kettunen, P., Mikkonen, T. J., Mjeda, A., Münch, J., Duc, A. N., Russo, B., & Wang, X. (2020). Towards a Secure DevOps Approach for Cyber-Physical Systems : An Industrial Perspective. International Journal of Systems and Software Security and Protection, 11(2), 38-57. https://doi.org/10.4018/IJSSSP.2020070103
Authors
Date
2020Copyright
© Authors, 2020
With the expansion of cyber-physical systems (CPSs) across critical and regulated industries, systems must be continuously updated to remain resilient. At the same time, they should be extremely secure and safe to operate and use. The DevOps approach caters to business demands of more speed and smartness in production, but it is extremely challenging to implement DevOps due to the complexity of critical CPSs and requirements from regulatory authorities. In this study, expert opinions from 33 European companies expose the gap in the current state of practice on DevOps-oriented continuous development and maintenance. The study contributes to research and practice by identifying a set of needs. Subsequently, the authors propose a novel approach called Secure DevOps and provide several avenues for further research and development in this area. The study shows that, because security is a cross-cutting property in complex CPSs, its proficient management requires system-wide competencies and capabilities across the CPSs development and operation.
...
Publisher
IGI GlobalISSN Search the Publication Forum
2640-4265Keywords
Publication in research information system
https://converis.jyu.fi/converis/portal/detail/Publication/41681977
Metadata
Show full item recordCollections
License
Related items
Showing items with similar title or keywords.
-
Industry 4.0 Intelligence under Attack : From Cognitive Hack to Data Poisoning
Terziyan, Vagan; Golovianko, Mariia; Gryshko, Svitlana (IOS Press, 2018)Artificial intelligence is an unavoidable asset of Industry 4.0. Artificial actors participate in real-time decision-making and problem solving in various industrial processes, including planning, production, and management. ... -
Countering Adversarial Inference Evasion Attacks Towards ML-Based Smart Lock in Cyber-Physical System Context
Vähäkainu, Petri; Lehto, Martti; Kariluoto, Antti (Springer, 2021)Machine Learning (ML) has been taking significant evolutionary steps and provided sophisticated means in developing novel and smart, up-to-date applications. However, the development has also brought new types of hazards ... -
Collective intelligence operations of human and virtual agents in CPS (Cyber Physical System)
Spiga, Fabiano (2020)This thesis deals with contemporary emergent approaches to CPS (Cyber Physical System) cognitive automation and embedded-intelligence processes, either with or without a HitL (Human-in-the-Loop) setting. The introduction ... -
Towards Practical Cybersecurity Mapping of STRIDE and CWE : a Multi-perspective Approach
Honkaranta, Anne; Leppänen, Tiina; Costin, Andrei (FRUCT Oy, 2021)Cybersecurity practitioners seek to prevent software vulnerabilities during the whole life-cycle of systems. Threat modeling which is done on the system design phase is an efficient way for securing systems; preventing ... -
Patented intelligence : cloning human decision models for Industry 4.0
Terziyan, Vagan; Gryshko, Svitlana; Golovianko, Mariia (Elsevier Ltd, 2018)Industry 4.0 is a trend related to smart factories, which are cyber-physical spaces populated and controlled by the collective intelligence for the autonomous and highly flexible manufacturing purposes. Artificial Intelligence ...