Summary
Automotive IoT applications are being deployed to provide various benefits and improved user experience; however, it is crucial to recognize that these automotive IoT applications also often introduce new cybersecurity attack vectors. As such, this chapter first explained the need for cybersecurity and secure software development practices by reviewing recent cyberattacks and guiding the reader through a simplified threat model of the automotive IoT ecosystem.
Next, we reviewed security-relevant development processes and frameworks. We divided the discussion into vehicle-related and non-vehicle-related development processes.
First, regarding the vehicle-side development, we covered ISO/SAE 21434 and ASPICE for Cybersecurity. We went into specifics on organizational-level requirements and project-level requirements, as well as reviewing specific security activities to help organizations understand what to focus on.
For the non-vehicle side development, targeting the...