Top Banner
ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016
13

ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Apr 29, 2018

Download

Documents

doankhue
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

ACARE WG 4 Security Overview

ART WS ‘ATM Security and Cybersecurity’

Kristof LamontATM & Cyber Security Expert

23 March 2016

Page 2: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

ACARE

Advisory Council for Aviation Research and Innovation in Europehttp://www.acare4europe.com/

ACARE is the Advisory Council for Aviation Research and innovation in Europe and provides a network for strategic research in aeronautics and air transport so that aviation satisfies the needs of society and secures global leadership for Europe in this important sector.ACARE is essential in bringing together the right stakeholders to turn the air transport vision in Europe into reality.ACARE has been in existence since 2001 and comprises European public and private stakeholders who collaborate on a common purpose to develop challenging improvements for aeronautics and air transport in Europe.ACARE maintains a governance structure to develop and review strategic options, priorities and objectives through a General Assembly and Strategy and Integration Board. Supporting groups provide forums to review implementation, infrastructure and communication needs on a regular basis.

ACARE WG 4 Security Overview 2

Page 3: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Organisation

ACARE WG 4 Security Overview 3

Page 4: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Strategic Research & Innovation Agenda (SRIA)

The SRIA is the new strategic roadmap for aviation research, development and innovation developed by ACARE that accounts for both the evolution of technology as well as radical changes or 'technology shocks'.

It aims to provide a guide to future actions in public and private funding programmes to ensure that research is adequately supported and funded.

Aviation is marked by the high complexity of its products and their components which are subject to very long R&D cycles (up to 20 years) and is technology and capital intensive.

As such, research efforts need to be based on a long-term programming approach that provides continuity across R&D efforts over many years. SRIA proposes a mission oriented R&D development that will meet the societal and market needs, will maintain and extend the industrial leadership, will protect the environment and the energy supply, will ensure safety and security, will prioritise research, testing capabilities and education.

ACARE WG 4 Security Overview 4

Page 5: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Advisory Council for Aviation Research and innovation in Europe 53/31/2016 5

Page 6: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Advisory Council for Aviation Research and innovation in Europe 6

The goals of Flightpath 2050

Ensuring safety and security1. Overall, the European air transport system has less than one accident per ten

million commercial aircraft flights. 2. Weather and other hazards from the environment are precisely evaluated and risks

are properly mitigated. 3. The European air transport system operates seamlessly through interoperable and

networked systems allowing manned and unmanned air vehicles to safely operate in the same airspace.

4. Efficient boarding and security measures allow seamless security for global travel, with minimum passenger and cargo impact. Passengers and cargo pass through security controls without intrusion,.

5. Air vehicles are resilient by design to current and predicted on-board and on-the-ground security threat evolution, internally and externally to the aircraft.

6. The air transport system has a fully secured global high bandwidth data network, hardened and resilient by design to cyber-attacks.

Page 7: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Advisory Council for Aviation Research and innovation in Europe 7

Rational to update the SRIA

Boundary conditions have changed since the SRIA was published in 2012. Drivers for the SRIA-Update

Societal

• Safety & security

• Repercussions of MH370 / MH 17 / 4U 9525 potentially affecting R&I or policy

• Increased focus on security

• Cyber-security threats (e.g. to aircraft equipment / ATM system / …)

• Need to integrate safety & security approaches

• Increasing societal ambiguity with regards to privacy • Technical framework conditions

• Dynamic developments in the field of IT e.g. Big data, Automation, Digitalisation, Virtualisation, Digital security & cryptography, Industry 4.0, New approaches to data and complexity science and related aspects (security, liability, privacy, …)

Page 8: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Advisory Council for Aviation Research and innovation in Europe 8

Drivers for the SRIA-Update

• ATM concepts and technologies• Flight and/or flow centric service provision, potentially including Sector less ATM

service provision • Virtualization of ATC services • Separation of infrastructure from service provisions, allowing ANSPs to plug-in

and deliver services more quickly and efficiently in any airspace. From system-based to service-oriented service provision

• Gradual implementation of interoperable, standardised, modular ATM systems • Cyber-security is a major concern with such large quantities of information

circulating in an aviation environment that, by using the internet, is connected to the external world. Innovative strategies may be explored to cope with security breaches designed to destroy, interrupt or corrupt information

• Suborbital flights integrations

Page 9: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Advisory Council for Aviation Research and innovation in Europe 93/31/2016 9

Page 10: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Advisory Council for Aviation Research and innovation in Europe 10

10 SECURITY ENABLERS

1. System wide SeMS2. Intelligence3. Security Radar4. System behaviour5. Forensic Analysis6. Standardisation & Certification7. Resilience by Design8. New Crew and Team Concepts9. Passenger Management10.Operational Mission Management

Page 11: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Advisory Council for Aviation Research and innovation in Europe 11

Security

• In June 2015, on request of the EC, a dedicated security sub-group was created within the WG/4 (Safety & Security)

• First meeting on 3rd Nov 2015• 2nd meeting on 15 to 17 March 2016• Objectives:

• To get input for the update of SRIA vol. 1• Review/modify the enablers• Define enabler milestones for 2020, 2035 and 2050• Review/modify the capabilities

Page 12: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Advisory Council for Aviation Research and innovation in Europe 12

KOM 3rd Nov/2015: Top 10 topics

1.Cyber for ATM/SWIM/AT System 2.Information sharing/protection platforms, including cyber3.Risk based screening differentiation 4.Total system approach 5.Certification/audit6.Addressing gaps in Modus Operandi 7.Balancing security vs. Operation8.Behaviour people/systems9.Design test beds for cyber attacks resilience10.Airport perimeter protection

12

Page 13: ACARE WG 4 Security Overview - Eurocontrol · ACARE WG 4 Security Overview ART WS ‘ATM Security and Cybersecurity’ Kristof Lamont ATM & Cyber Security Expert 23 March 2016

Advisory Council for Aviation Research and innovation in Europe Advisory Council for Aviation Research and innovation in Europe

Outcome 2nd meeting• Need for a review of Volume 1 and 2 of the

Agenda (SRIA)• Including Clusters, Enablers and Capabilities• Simplify and make the agenda more user

friendly• Better integration of safety and security• Include Enabler ‘Information Sharing’• Provide results by end 2016

3/31/2016 13