On Security Risk Management for Teleoperated Driving Systems
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F00216305%3A26220%2F26%3A0198585" target="_blank" >RIV/00216305:26220/26:0198585 - isvavai.cz</a>
Result on the web
<a href="https://ieeexplore.ieee.org/stamp/stamp.jsp?tp=&arnumber=11136163" target="_blank" >https://ieeexplore.ieee.org/stamp/stamp.jsp?tp=&arnumber=11136163</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.1109/ACCESS.2025.3602202" target="_blank" >10.1109/ACCESS.2025.3602202</a>
Alternative languages
Result language
angličtina
Original language name
On Security Risk Management for Teleoperated Driving Systems
Original language description
Teleoperated driving technology enables human operators to control vehicles remotely, thereby reducing the need for the driver’s physical presence within the vehicle. Although this innovation enhances operational flexibility, it introduces security challenges that, if unaddressed, could undermine the reliability and safety of Teleoperated Driving Systems (TDS). This paper presents a comprehensive security risk analysis and architectural framework for TDS, emphasizing the system architecture. Our study combines an in-depth review of the existing literature with a structured risk management assessment to analyze TDS assets and data flows. By detailing the system and business assets, their interconnections, and the unique vulnerabilities inherent to TDS, we define critical security threats – ranging from unauthorized control and data manipulation to vulnerabilities in session management protocols and network configurations. The selected security risk management approach guides our risk analysis, maps security threats and vulnerabilities to the corresponding security requirements and controls, and provides a prioritized strategy for risk treatment. Validation results show that our risk analysis achieves strong coverage, with a third-party threat analysis tool confirming eighteen (18) of the thirty-two (32) identified security threats and highlighting three (3) additional scenarios, while missing fourteen (14) threats mainly due to tool limitations. Our results offer practitioners a practical blueprint for identifying and managing security risks in TDS.
Czech name
—
Czech description
—
Classification
Type
J<sub>imp</sub> - Article in a specialist periodical, which is included in the Web of Science database
CEP classification
—
OECD FORD branch
10201 - Computer sciences, information science, bioinformathics (hardware development to be 2.2, social aspect to be 5.8)
Result continuities
Project
—
Continuities
R - Projekt Ramcoveho programu EK
Others
Publication year
2025
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Name of the periodical
IEEE Access
ISSN
2169-3536
e-ISSN
—
Volume of the periodical
13
Issue of the periodical within the volume
2025
Country of publishing house
US - UNITED STATES
Number of pages
17
Pages from-to
151153-151169
UT code for WoS article
001562596000009
EID of the result in the Scopus database
—