2016年-普华永道全球__Aviation_Perspectives_Volume_42_-_Prevention_8页_3mb
报告摘要
Aviation Cybersecurity: Prevention Summary
Core Content
This document is part of a 2016 special report series on cybersecurity and the airline industry, focusing specifically on prevention strategies. It highlights the increasing complexity of cyber threats in the aviation sector and the need for a comprehensive, evolving approach to cybersecurity.
Main Points
1. Cybersecurity as a High-Priority Risk
- Airline executives face new risks in the cyber domain, where protecting passengers, flight crews, and trading partners has become more complex.
- Prevention is now a primary focus in global air transport due to the economic and operational impacts of cyber disruptions.
- The NIST Cybersecurity Framework is a key reference for U.S. transportation companies, including air carriers.
2. The Need for a Risk-Based Framework
- A risk-based cybersecurity program must address all areas of the airline, including back-office IT, maintenance, operations, and consumer-facing systems.
- Security culture is essential, with cyber awareness embedded into the organizational fabric.
- Key functions such as Procurement, Maintenance, Operations, Marketing, IT, Management, and the Board each have specific roles in cybersecurity.
3. Proactive Cybersecurity Strategies
- Airlines must prioritize their assets, threats, and threat perpetrators to allocate resources effectively.
- Threat intelligence services provide real-time data to identify and model potential cyber threats.
- Cloud and big data technologies are being used to enhance threat modeling and monitoring capabilities.
- Penetration testing is used by some airlines to evaluate the strength of their security procedures.
4. Supporting International Standards
- There is a lack of international cybersecurity standards, prompting efforts by the US, Europe, and IATA to address this gap.
- The FAA has formed a working group to improve cybersecurity on e-enabled aircraft.
- EASA has held workshops on cybersecurity, and IATA has called for better threat sharing globally.
- Airlines can support these efforts by forming informal alliances to discuss best practices and leading industry approaches.
5. Addressing Supply Chain Risks
- Collaboration with external partners (e.g., OEMs, MROs, IFEC providers) is critical for threat sharing and response.
- Vendor contracts should include audit clauses and testing procedures to ensure security compliance.
- Smaller companies may have less stringent security protocols, increasing the risk for airlines.
6. Cybersecurity Technologies and Processes
- Threat intelligence is vital for identifying and prioritizing threats using both internal and external sources.
- Identity and Access Management (IAM) is essential for authenticating and authorizing access to systems.
- Privileged Access Management (PAM) helps control access to critical systems.
- Multifactor Authentication (MFA) adds layers of security beyond passwords.
- Adaptive authentication uses contextual data to detect anomalies and reduce risk.
- Data protection and encryption are used to secure sensitive information such as payment cards and personal data, especially in light of evolving regulations like the GDPR.
- Design and application security emphasize building security into systems from the start, as addressing flaws later is significantly more expensive.
7. Security Awareness and Culture
- Security awareness is a key defense against cyber threats, with all employees, not just IT or security teams, needing to be informed.
- Phishing attacks are a major threat, often targeting executives for access to sensitive data.
- A cultural commitment to cybersecurity is necessary, similar to how environmental safety is ingrained in factory culture.
Key Information
- Cybersecurity in aviation is a shared responsibility among airlines, OEMs, MROs, GDS, and other stakeholders.
- Prevention strategies must balance horizontal breadth (protecting the entire value chain) and vertical depth (investing in advanced security tools).
- Threat intelligence and adaptive authentication are critical tools for modern prevention efforts.
- Encryption and tokenization are essential for protecting customer and employee data.
- Security culture and awareness training are vital to reducing the risk of human error.
- International collaboration and standardization are necessary to address the global nature of cyber threats.
Conclusion
Airlines must adopt a proactive, risk-based, and culturally integrated approach to cybersecurity. This includes leveraging industry partnerships, advanced technologies, and internal security awareness to prevent cyber events that could disrupt operations and compromise safety.
展开完整摘要
试读结束,高清完整版pdf/doc/ppt,请点下载