Why SESIP? A Pragmatic Assurance Framework for Automotive Cybersecurity
Why SESIP?
A Pragmatic Assurance Framework for Automotive Cybersecurity
This white paper provides an introduction to leveraging SESIP within Automotive, both addressing the reasons it is a valuable tool in supporting cybersecurity assurance level objectives with ISO/SAE 21434 and providing an overview of how it works. It summarizes the definition of platform scope of evaluation, Security Functional Requirements, Security Assurance Requirements, defining security targets, and how composition works to reuse existing component certificates in a larger evaluation. It positions how GlobalPlatform provides governance, how the certification process works, and how GlobalPlatform SESIP profiles are developed. The document also provides illustrative examples of how automotive supply chain scenarios can leverage the methodology to layered platform stacks.