ISO 26262 Cybersecurity in Functional Safety Audit Checklist

A comprehensive checklist for auditing the integration of cybersecurity considerations within ISO 26262 functional safety processes, aligning with ISO/SAE 21434 principles for automotive cybersecurity

Get Template

About This Checklist

The ISO 26262 Cybersecurity in Functional Safety Audit Checklist is a crucial tool for addressing the intersection of functional safety and cybersecurity in modern automotive systems. This comprehensive checklist aligns with the principles of ISO 26262 and incorporates cybersecurity considerations as outlined in ISO/SAE 21434. By systematically evaluating the integration of cybersecurity measures within functional safety processes, this checklist assists automotive cybersecurity specialists and functional safety managers in identifying potential vulnerabilities, ensuring robust security-aware safety designs, and maintaining compliance with evolving safety and security standards. Implementing this checklist not only enhances the overall security posture of safety-critical automotive systems but also contributes to the development of more resilient and secure vehicles, reducing the risk of cyber-attacks that could compromise safety functions.

Learn more

Industry

Automotive

Standard

ISO 26262 - Functional Safety for Road Vehicles

Workspaces

Automotive cybersecurity labs
Automotive Development Centers
Secure Facilities

Occupations

Automotive Cybersecurity Specialist
Functional Safety Manager
System Security Engineer
Integrated Safety and Security Assessor
Automotive Software Security Expert
1
Is a cybersecurity risk assessment conducted for this system?
2
How many security updates have been applied in the last quarter?
Min0
Target5
Max100
3
Have secure design practices been followed in the development of this system?
4
Please provide details of the threat analysis conducted for this system.
5
Is the system compliant with ISO 26262 functional safety standards?
6
Have all safety requirements been documented and approved?
7
When was the last functional safety and cybersecurity audit conducted?
8
How many vulnerabilities were identified during the last cybersecurity assessment?
Min0
Target0
Max100
9
Is there an established governance framework for cybersecurity?
10
Are roles and responsibilities for cybersecurity clearly documented?
11
How many cybersecurity awareness training sessions have been conducted in the last year?
Min0
Target2
Max50
12
When was the last review of the cybersecurity governance framework conducted?
13
Is there an incident response plan in place for cybersecurity incidents?
14
Please provide an overview of the incident response plan.
15
How many incident response training sessions have been conducted in the last year?
Min0
Target3
Max20
16
When was the last incident response simulation conducted?

FAQs

This checklist bridges the gap between ISO 26262 (functional safety) and ISO/SAE 21434 (cybersecurity), focusing on the integration of cybersecurity measures within functional safety processes for automotive systems.

The primary users are automotive cybersecurity specialists, functional safety managers, system security engineers, and integrated safety and security assessment teams working on modern automotive electronic systems.

Integration is crucial because cyber-attacks can potentially compromise safety-critical functions, making it essential to consider cybersecurity aspects throughout the safety lifecycle to ensure comprehensive protection.

The checklist covers threat analysis and risk assessment, security-aware safety requirements, secure design principles, cybersecurity testing in safety contexts, and the management of security updates for safety-critical systems.

This audit should be applied throughout the entire development lifecycle, from concept phase to production and operation, with particular emphasis during system design, integration, and validation stages.

Benefits of ISO 26262 Cybersecurity in Functional Safety Audit Checklist

Ensures alignment between functional safety and cybersecurity requirements in automotive systems

Improves resilience against cyber threats that could impact safety-critical functions

Facilitates early detection of potential cybersecurity vulnerabilities in safety systems

Enhances traceability between safety requirements and cybersecurity measures

Supports comprehensive threat analysis and risk assessment in the context of functional safety