Misplaced Pages

Cyber Security Management System: Difference between revisions

Article snapshot taken from Wikipedia with creative commons attribution-sharealike license. Give it a read and then ask your questions in the chat. We can research this topic together.
Browse history interactively← Previous editNext edit →Content deleted Content addedVisualWikitext
Revision as of 18:51, 28 November 2024 editIdoghor Melody (talk | contribs)Autopatrolled, Event coordinators, Extended confirmed users, Page movers, IP block exemptions, New page reviewers, Pending changes reviewers32,104 editsm clean up, added Empty section (1) tag, typo(s) fixed: the the → theTag: AWB← Previous edit Revision as of 02:46, 6 December 2024 edit undoCitation bot (talk | contribs)Bots5,405,570 edits Add: date, title. Changed bare reference to CS1/2. | Use this bot. Report bugs. | Suggested by Abductive | Category:Articles with empty sections from November 2024 | #UCB_Category 128/249Next edit →
Line 1: Line 1:
A '''Cyber Security Management System''' is a form of ], particularly focussed on protecting automation and transport systems.<ref>https://www.msg-plaut.com/cybersecurity/cyber-security-management-systems-csms</ref> The EU Cybersecurity Act, of 2019, led to the creation of ] working groups which developed the Cyber Security Management Systems (CSMS) concept (and also an approach for securing over-the-air updates of vehicle systems), which were formalised in ].<ref>https://unece.org/sustainable-development/press/un-regulations-cybersecurity-and-software-updates-pave-way-mass-roll</ref> A '''Cyber Security Management System''' is a form of ], particularly focussed on protecting automation and transport systems.<ref>{{cite web | url=https://www.msg-plaut.com/cybersecurity/cyber-security-management-systems-csms | title=Automotive }}</ref> The EU Cybersecurity Act, of 2019, led to the creation of ] working groups which developed the Cyber Security Management Systems (CSMS) concept (and also an approach for securing over-the-air updates of vehicle systems), which were formalised in ].<ref>{{cite web | url=https://unece.org/sustainable-development/press/un-regulations-cybersecurity-and-software-updates-pave-way-mass-roll | title=UN Regulations on Cybersecurity and Software Updates to pave the way for mass roll out of ‎connected vehicles ‎ &#124; UNECE }}</ref>


==Context== ==Context==
Security technologies, and threats, can evolve much more quickly than regulatory bodies; so the CSMS emphasises a system of technologies and processes which can adapt more quickly, without relying on a narrowly-defined list of technical controls in a standard.<ref>https://plaxidityx.com/blog/standards-and-compliance/unece-recommendation-on-software-update-processes/</ref> Consequently, the CSMS is intended to be technology-neutral, much like ], unlike detailed technical security standards such as ]. Security technologies, and threats, can evolve much more quickly than regulatory bodies; so the CSMS emphasises a system of technologies and processes which can adapt more quickly, without relying on a narrowly-defined list of technical controls in a standard.<ref>{{cite web | url=https://plaxidityx.com/blog/standards-and-compliance/unece-recommendation-on-software-update-processes/ | title=UNECE Recommendation on Software Update Processes - Argus | date=26 May 2020 }}</ref> Consequently, the CSMS is intended to be technology-neutral, much like ], unlike detailed technical security standards such as ].


==Framework== ==Framework==

Revision as of 02:46, 6 December 2024

A Cyber Security Management System is a form of Information security management system, particularly focussed on protecting automation and transport systems. The EU Cybersecurity Act, of 2019, led to the creation of UNECE working groups which developed the Cyber Security Management Systems (CSMS) concept (and also an approach for securing over-the-air updates of vehicle systems), which were formalised in UN Regulation 155.

Context

Security technologies, and threats, can evolve much more quickly than regulatory bodies; so the CSMS emphasises a system of technologies and processes which can adapt more quickly, without relying on a narrowly-defined list of technical controls in a standard. Consequently, the CSMS is intended to be technology-neutral, much like ISO 27001, unlike detailed technical security standards such as PCI DSS.

Framework

This section is empty. You can help by adding to it. (November 2024)

See also

References

  1. "Automotive".
  2. "UN Regulations on Cybersecurity and Software Updates to pave the way for mass roll out of ‎connected vehicles ‎ | UNECE".
  3. "UNECE Recommendation on Software Update Processes - Argus". 26 May 2020.

Further reading

Categories: