Towards a Secure DevOps Approach for Cyber-Physical Systems: An Industrial Perspective
Loading...
Access rights
openAccess
publishedVersion
URL
Journal Title
Journal ISSN
Volume Title
A1 Alkuperäisartikkeli tieteellisessä aikakauslehdessä
This publication is imported from Aalto University research portal.
View publication in the Research portal (opens in new window)
View/Open full text file from the Research portal (opens in new window)
View publication in the Research portal (opens in new window)
View/Open full text file from the Research portal (opens in new window)
Date
2020
Major/Subject
Mcode
Degree programme
Language
en
Pages
20
Series
International Journal of Systems and Software Security and Protection, Volume 11, issue 2, pp. 38-57
Abstract
With the expansion of cyber-physical systems (CPSs) across critical and regulated industries, systems must be continuously updated to remain resilient. At the same time, they should be extremely secure and safe to operate and use. The DevOps approach caters to business demands of more speed and smartness in production, but it is extremely challenging to implement DevOps due to the complexity of critical CPSs and requirements from regulatory authorities. In this study, expert opinions from 33 European companies expose the gap in the current state of practice on DevOps-oriented continuous development and maintenance. The study contributes to research and practice by identifying a set of needs. Subsequently, the authors propose a novel approach called Secure DevOps and provide several avenues for further research and development in this area. The study shows that, because security is a cross-cutting property in complex CPSs, its proficient management requires system-wide competencies and capabilities across the CPSs development and operation.Description
Keywords
Aerospace, Agile Development, Automotive, Continuous deployment, CPS, Development methodologies, Empirical Research, Energy, Healthcare, Secure software engineering, Software security
Other note
Citation
Abrahamsson, P, Ghanbari, H, Botterweck, G, Gilje Jaatun, M, Kettunen, P, Mikkonen, T, Mjeda, A, Münch, J, Nguyen Duc, A, Russo, B & Wang, X 2020, ' Towards a Secure DevOps Approach for Cyber-Physical Systems : An Industrial Perspective ', International Journal of Systems and Software Security and Protection, vol. 11, no. 2, pp. 38-57 . https://doi.org/10.4018/IJSSSP.2020070103