Skip to Main Content

Enhancing Aviation Cybersecurity with DO-356 standard Compliance

Aviation Cybersecurity Compliance: Risk Assessment for Electronic Flight Bags

Learn from Astronautics Corporation of America why ensuring compliance with standards like DO-356 (Airworthiness Security Methods and Considerations) is critical for mitigating risks in networked avionics systems, and how Ansys supports to enhance aviation cybersecurity compliance.

Watch Presentation

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Overview

In the rapidly evolving landscape of aviation cybersecurity, ensuring compliance with standards like DO-356 (Airworthiness Security Methods and Considerations) is critical for mitigating risks in networked avionics systems.  Using Ansys and Systems Theoretic Process Analysis (STPA), streamlines safety and enhances system security and aviation cybersecurity with DO-356 standard compliance.

Focusing on a real-world use case for a Class 3 installed Electronic Flight Bag (EFB) system, the session will demonstrate how security engineers can start from functional requirements and physical architecture to identify threats, assess risks, and derive security requirements. Drawing from Astronautics' proven methodology, developed in collaboration with MIT Lincoln Laboratory for the FAA's Aircraft Systems Information Security/Protection (ASISP) program, the presentation will align with Systems Theoretic Process Analysis (STPA) principles. Key steps include defining system function statements, modeling control structures, building attack trees, evaluating adversary capabilities and safety impacts, and generating traceable risk charts and reports.

What Attendees Will Learn

  • Importance of DO-356 standards in cybersecurity compliance 
  • Real-world risk assessment for Electronic Flight Bags (EFBs) 
  • Leveraging Systems Theoretic Process Analysis (STPA) 
  • Automation of threat analysis with Medini Analyze 
  • Early integration of cybersecurity in product development 
  • Structured approach to identifying threats and assessing risks  Collaboration with MIT Lincoln Laboratory for enhanced methodologies 

Who Should Attend and Why

  • Ideal for avionics engineers, security professionals, and certification specialists

Speaker

  • Joe Reisinger is a senior systems engineer for connected applications at Astronautics Corporation of America. Holding this role since July 2022, he has been a significant contributor to the cybersecurity department, first working on the FAA Aircraft System Information Security/Protection program and, most recently, developing and releasing the Avionics Security Assurance department processes and procedures.