|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/overview-cybersecurity-engineering-isosae-214342021/
课程评论:没有评论
**Coursera 课程《网络安全工程概览 (ISO/SAE 21434:2021)》内容总结** 本课程深入探讨了汽车网络安全领域,特别是围绕 ISO/SAE 21434:2021 标准,旨在为学员提供全面的网络安全工程知识。课程结构清晰,主要分为三个章节: **第一章:导论** * **课程介绍及背景:** 课程将首先介绍授课讲师,并进行一次重要的启迪性讲座,阐述当前汽车行业网络安全为何如此关键。 **第二章:网络安全** * **基础概念与历史:** 本章将回顾网络安全的历史发展,并阐明与网络安全相关的基本术语和定义。 * **法律法规解析:** 此外,本章还将探讨网络安全相关的法律法规问题。 **第三章:ISO 21434 标准详解** 本章是课程的核心,将逐章、逐要点地深入剖析 ISO 21434 网络安全标准。 * **第 5 章:组织网络安全管理:** 重点介绍在组织层面需要考虑的关键要素,例如网络安全策略的制定。 * **第 6 章:项目相关的网络安全管理:** 涵盖项目层面的管理实践,包括责任的明确、网络安全计划的制定以及网络安全案例的构建等。 * **第 7 章:分布式网络安全活动:** 聚焦于供应商接口协议的管理。 * **第 8 章:持续性网络安全活动:** 阐述网络安全监测以及漏洞管理的相关要求。 * **第 9 章:概念(Concept):** 作为 ISO 21434 V 模型的一部分,本章将介绍项定义(item definition)以及威胁分析和风险评估(TARA)的执行。 * **第 10 章:产品开发:** 关注网络安全规范的制定以及验证活动的定义。 * **第 11 章:网络安全验证:** 详解网络安全验证相关的活动。 * **第 12 章:生产:** 介绍生产过程中的网络安全要求。 * **第 13 章:运营与维护:** 讨论产品在生命周期中的网络安全运营和维护。 * **第 14 章:网络安全支持的终止与报废:** 涵盖了产品生命周期结束或报废时的网络安全考量。 **课程亮点:** 课程最后还将概述 ISO 26262 标准的结构,因为 ISO 26262 作为安全标准,是 ISO 21434 最重要的参考标准之一。 **(无具体教学大纲)**
The course is divided into two main chapters:- Introduction- Cybersecurity- ISO 21434Chapter 1: IntroductionIncludes an introduction of the course creator and provides a motivation lecture, why cybersecurity is an important topic in the automotive industry nowadays.Chapter 2: CybersecurityThe chapter provides information on history and basic terms and definitions related to cybersecurity. Also legal aspects are discussed in the chapter.Chapter 3: ISO 21434The chapter includes all chapters of the cybersecurity standard ISO 21434 and explains the most important aspects of the chapters step by step.The following chapters are covered by the course:- Clause 5: Organizational cybersecurity managementThe chapter provides an overview of the most important aspects to be considered at the organizational level. For example the consideration of a cybersecurity policy.- Clause 6: Project dependent cybersecurity managementThe project dependent management includes the definition of responsibilities, a cybersecurity plan and cybersecurity case and more.- Clause 7: Distributed cybersecurity activitiesThis chapter focuses on the supplier interfaces agreement. - Clause 8: Continual cybersecurity activitiesIn this chapter requirements for monitoring of cybersecurity and management of vulnerabilities is described.- Clause 9: ConceptThe concept phase is part of the ISO 21434 V-model and includes the item definition and performance of a threat analysis and risk assessment.- Clause 10: Product developmentThe chapters focuses on the cybersecurity specifications and definition of verification activities.- Clause 11: Cybersecurity validationThe chapter focuses on cybersecurity validation activities.- Clause 12: Production- Clause 13: Operations and maintenance- Clause 14: End of cybersecurity support and decommissioningAt the end you get an overview of the ISO 26262 structure, since the safety standard ISO 26262 is one of the most important references in the ISO 21434.