Insights

Opinions and observations.

DIVE INTO OUR

Articles

The complete archive of our published works.

  • Integrated Solutions for ASPICE

    Integrated Solutions for ASPICE, Functional Safety and Cybersecurity in Automotive Development

    General As electronic systems and connectivity in modern vehicles rapidly evolve, the entire industry increasingly emphasizes the importance of safety and security. In accordance there have been several industrial standards and regulations initiated and released, among them the most important ones include ASPICE, functional safety (ISO 26262), and cybersecurity (ISO/SAE 21434). All of these standards [...]

  • People standing outside a cabin near the ocean

    Expert Services – An Updated Solution

    What is the idea of Expert Services? The essence of Expert Services is to offer better support and services related to our product, SystemWeaver. Our goal is to empower our customers by ensuring they can fully leverage the capabilities of our product, thereby maximizing its potential to meet their needs effectively. The idea is also [...]

  • Building in a city at sunset

    Empowering Compliance and Control: A Deep Dive

    Anders Hallgren has been with SystemWeaver for 6 years. He recently became VP of Product Management, so we wanted to check in with him to gain some insights into how he sees the product. What is SystemWeaver? We provide a tool that aims to help engineers collaborate, fostering an environment where continuous product compliance is [...]

  • Pillars

    The pillars of automotive risk management

    Abstract The automotive industry grapples with inherent software and hardware risks, necessitating collaboration across various organizational departments. Key stakeholders, including Research and Development (R&D), risk management, compliance teams, and specialized entities like the Vehicle Security Operations Center (VSOC) and Product Security Operations Center (PSOC), must collectively address these challenges. To achieve a comprehensive understanding and [...]

  • Security picture

    How can LLMs help with cyber threat remediation?

    Large Language Models (LLMs), such as ChatGPT and Google Bard are groundbreaking innovations that can contribute significantly to cybersecurity threat intelligence in various ways. They can process and analyze vast amounts of unstructured threat intelligence data, such as reports, blogs, and news articles. By extracting relevant information and identifying patterns, LLMs can help security professionals [...]

  • Image of Attack tree screenshot

    A walk through the field of cybersecurity

    With her several years of experience in cybersecurity, we decided to have a talk with Elmira Anbardar about the ever-changing challenges of automotive cybersecurity. Why is Cybersecurity at the top of everyone’s mind? With the automotive sector increasingly shifting towards software-centric models, Original Equipment Manufacturers (OEMs) are undergoing a significant transformation. They are evolving from [...]

  • Ali

    The Role of Cybersecurity in Autonomous Vehicle Development

    The importance of cybersecurity is growing with the development of more autonomous cars. Ali Shahrokni is SystemWeaver's own in-house cybersecurity expert, and with his many years of experience in the field, as well as a PhD, we wanted to pick his brain for insights and thoughts he has on the subject. Why are you working [...]

  • ISO/SAE 21434

    Commonality and distinctions of Cybersecurity Assurance Level and Risk Value in ISO/SAE 21434

    ISO/SAE 21434 had its first edition released in 2021. There are two concepts related to threats initiated in ISO/SAE 21434: CAL (Cybersecurity Assurance Level) and RV (Risk Value). Definition and Requirements of CAL and RV Cybersecurity Assurance Level (CAL) is referred to three times in the context of ISO/SAE 21434: [RQ-09-05] Cybersecurity goal - NOTE [...]

  • Cybersecurity framework

    NIST Cybersecurity Framework The National Institute of Standards and Technology (NIST) has recently released the public draft of Cybersecurity Framework (CSF) 2.0, open for comments until November 4, 2023. This version follows the previously published CSF 1.1 from 2018. Major Changes in CSF 2.0 CSF 2.0 introduces two significant updates that warrant attention. Firstly, the [...]