• DocumentCode
    2131289
  • Title

    Applying the SecRAM Methodology in a CLOUD-Based ATM Environment

  • Author

    Marotta, Antonio ; Carrozza, Gabriella ; Battaglia, Luigi ; Montefusco, Patrizia ; Manetti, Vittorio

  • Author_Institution
    SESM S.C.A.R.L., Giugliano, Italy
  • fYear
    2013
  • fDate
    2-6 Sept. 2013
  • Firstpage
    807
  • Lastpage
    813
  • Abstract
    The SESAR ATM Security Risk Assessment Methodology (SecRAM) aims at providing a methodology to be applied by the SESAR Operational Focus Areas (OFAs). To give effectiveness to the evaluation of SecRAM, Air Traffic Management (ATM) operative scenarios are greatly required. In this paper we leverage a Cloud-based approach to build up a virtualized replica of a real Air Control Centre (ACC) in order to realize a vulnerability analysis and to find some possible points of attacks. Then we applied the SecRAM methodology on our test-bed and we built a real threat scenario for which a risk treatment is properly designed.
  • Keywords
    aerospace computing; air traffic control; cloud computing; risk management; security of data; traffic engineering computing; ACC; Air Control Centre; OFA; SESAR ATM security risk assessment methodology; SecRAM methodology; air traffic management; cloud computing; cloud-based ATM environment; operational focus areas; points-of-attacks; quality assessment; risk mitigation; risk treatment; vulnerability analysis; Air traffic control; Availability; Cloud computing; Computational modeling; Correlation; Risk management; Security; ATM testbed; Cloud Computing; SESAR SecRAM; quality assessment; risk mitigation;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Availability, Reliability and Security (ARES), 2013 Eighth International Conference on
  • Conference_Location
    Regensburg
  • Type

    conf

  • DOI
    10.1109/ARES.2013.108
  • Filename
    6657324