From SOC to VSOC

  • The prioritization of passenger safety and comfort in the automotive sector lead to the research and development of technologies such as seat belts, airbags, driving assistants, and autonomous driving. These technologies bring advantages and new, unique dangers in the area of Information Technology (IT) security. Most enterprises have established a Security Operations Center (SOC) to protect their IT systems from security threats. Due to the changing threat landscape, increasing hacker attacks, and unique challenges, introducing a dedicated Vehicle Security Operations Center (VSOC) is critical. This paper defines in which aspects a VSOC that specializes in protecting vehicle fleets has to be adapted to the application area compared to an enterprise IT SOC. The aspects are found by defining primary SOC capabilities from existing literature on a non-domain-specific SOC. Determined by the definition of a SOC, requirements of current regulations and best practices of IT security in the automotive sector are collected. Based on these minimum requirements, the differences between an enterprise IT SOC and a VSOC can be discerned using coverage, people, technical, governance, and compliancemetrics. This approach shows that the methods, procedures, and technical solutions used in an enterprise IT SOC can, for the most part, not be directly implemented in a VSOC. By defining the minimum legal requirements of a VSOC and giving an overview of the unique challenges of protecting a vehicle fleet, this paper offers a concrete basis for the design and practical implementation of a VSOC.

Download full text files

Export metadata

Additional Services

Share in Twitter Search Google Scholar
Metadaten
Author:Jenny HofbauerORCiDGND, Kevin Klaus Gomez BuquerinORCiDGND, Hans-Joachim HofORCiDGND
URN:urn:nbn:de:hbz:294-103899
DOI:https://doi.org/10.13154/294-10389
Parent Title (English):21th escar Europe : The World's Leading Automotive Cyber Security Conference (Hamburg, 15. - 16.11.2023)
Subtitle (English):Transferring key requirements for efficient vehicle security operations
Document Type:Part of a Book
Language:English
Date of Publication (online):2023/10/25
Date of first Publication:2023/10/25
Publishing Institution:Ruhr-Universität Bochum, Universitätsbibliothek
Tag:Automotive Security; Enterprise IT SOC; Security Operations Center; Vehicle SOC
Pagenumber:15
Dewey Decimal Classification:Allgemeines, Informatik, Informationswissenschaft / Informatik
open_access (DINI-Set):open_access
Konferenz-/Sammelbände:21th escar Europe : The World's Leading Automotive Cyber Security Conference
Licence (German):License LogoKeine Creative Commons Lizenz - es gelten die Rechteeinräumung und das deutsche Urheberrecht