Towards Harmonising the Legislative, Regulatory, and Standards-Based Framework for ATM Security: Developing a Software Support Tool

This research-in-progress paper addresses the elementary capabilities and underlying challenges pertaining to the development of a software tool to support the identification and harmonisation of legislation, regulation, standards, and best practices for ATM Security. The consistent application of ATM Security requirements throughout the SESAR Joint Undertaking Work Programme is a challenge. There is a need to provide a tool for security experts, concept developers and technical experts to ensure compliance with the underlying framework for ATM Security. The software tool described in this paper addresses this issue. In particular, it supports functions that allow for the extraction, categorisation, association, and harmonisation of the rules imposed by the framework. The approach and challenges to the design of the envisaged tool capabilities are outlined. Initial lessons learnt are presented based on the findings at the current prototyping stage. It is reasoned that the feasibility stage is completed and that further development can adhere to the identified capabilities and design outline. User interaction specification and development will be facilitated with an iterative user-based agile software development process.

[1]  David A. Mundie,et al.  Building an Incident Management Body of Knowledge , 2012, 2012 Seventh International Conference on Availability, Reliability and Security.

[2]  Tom M. van Engers,et al.  Using ontologies for comparing and harmonizing legislation , 2003, ICAIL.

[3]  R. Koelle,et al.  Semantic driven security assurance for system engineering in SESAR/NextGen , 2013, 2013 Integrated Communications, Navigation and Surveillance Conference (ICNS).

[4]  P. Bowen,et al.  Information Security Handbook: A Guide for Managers , 2006 .