Papers, book chapters, conference contributions and articles from 2011 onwards, on functional safety, automotive cybersecurity, process assessment and software architecture.
Most of this work was written alongside series development rather than instead of it, which is why the topics track what was actually difficult at the time — freedom from interference and multicore partitioning in the mid-2010s, safety and security integration from 2015, and TARA methodology and assessment practice since 2021.
Peer-reviewed
Journal articles, book chapters and proceedings
Published with Springer, Wiley, Elsevier, SAE and ASQ.
| Year | Title | Publication |
|---|---|---|
| 2025 | A Multilevel Approach to TARA: Proposals for Attack Feasibility in Interference-Free Scenarios | Wiley, Software: Evolution and Process, Volume 37, issue 12 |
| 2024 | Consistency for More Than One TARA and Security Element Our Of Context Experiences | Communications in Computer and Information Sciencs, 2179 CCIS |
| 2023 | CYBERENF – Training Cybersecurity Engineer and Manager Skills in Automotive – Experience | Communications in Computer and Information Science, 1890 CCIS |
| 2023 | Experiences with the automotive SPICE for cybersecurity assessment model and tools | Journal of Software Evolution and Process, 35(9), e2519 |
| 2023 | The New Cybersecurity Challenges and Demands for Automotive Organisations and Projects – An Insight View | Springer, Communications in Computer and Information Science, 1890 CCIS |
| 2022 | Automotive Cybersecurity Manager and Engineer Skills Needs and Pilot Course Implementation | Communications in Computer and Information Science, 1646 CCIS |
| 2022 | Automotive SPICE for Cybersecurity – MAN.7 Cybersecurity Risk Management and TARA | Communication in Computer and Information Science, 1646 CCIS |
| 2021 | Automotive Cybersecurity – Training the Future | Communications in Computer and Information Science, 1442 |
| 2018 | An architectural approach to the integration of safety and security requirements in smart products and systems design | Elsevier, CIRP Annals, Volume 67, Issue 1, 2018, Pages 173-176 |
| 2017 | Automotive SPICE, Safety and Cybersecurity Integration | Springer; Computer Safety, Reliability, and Security; SAFECOMP 2017 Workshops, ASSURE, DECSoS, SASSUR, TELERISE, and TIPS, Trento, Italy, September 12, 2017, Proceedings |
| 2017 | Communication Mechanisms for Fail-Operational High Performance Controllers | ELIV 2017 |
| 2017 | The Need for the Continuous Evolution of Systems Engineering Practices for Modern Vehicle Engineering | Springer International Publishing |
| 2016 | Automotive Security: Challenges, Standards and Solutions | American Society for Quality |
| 2016 | Automotive Security: Challenges, Standards and Solutions | EuroSPI 2016 |
| 2016 | Design Patterns and Degradation Mechanisms for Fail-Operational Systems | SAE World Congress 2016 |
| 2016 | Integrating Assessment Models for ASPICE, Functional Safety, and Cybersecurity | American Society for Quality |
| 2013 | Experience from Functional Safety and Risk Management – A View from Automotive to Medical Devices | EuroSPI 2013 |
| 2012 | Experiences from the Development of a Safety Operating System for AUTOSAR | EuroSPI 2012 |
Conferences
Conference contributions and keynotes
Presented at EuroSPI, VDA Automotive SYS, SAFECOMP, Safetronic, embedded world, ELIV and others.
| Year | Title | Venue |
|---|---|---|
| 2018 | EB corbos and the L4Re microhypervisor: Open-source automotive safety | Linaro Connect 2018 |
| 2018 | Is Linux ready for safety related applications? | ETAS Connections 2018 |
| 2018 | Safety and Security Aspects of Automotive High Performance Controllers | Funktionale Sicherheit und Security in der Fahrzeugelektronik |
| 2017 | “Legacy” Software | Gate4SPICE Workshop |
| 2017 | Warum agil kein Allheilmittel ist – Möglichkeiten und Grenzen agiler Methoden | 2. Praxiswerkstatt Agilität und Digitale Transformation – Vom Hype zur nutzbringenden Realisierung |
| 2016 | Balanceability is the new “Agile” | Keynote on Iqnite 2016 |
| 2016 | Balanceability is the new “Agile” | Keynote on Agile in Automotive 2016 |
| 2016 | Dependable Computing Infrastructures in Vehicles | Funktionale Sicherheit in der Fahrzeugelektronik |
| 2016 | Evolving Needs for Software Systems – demonstrated | Workshop at the VDA Automotive SYS 2016 |
| 2015 | Balanceability is the new “Agile” (Keynote) | EuroAsiaSPI 2015 |
| 2015 | Controlling Complexity With Verification Criteria | INTACS Gate4SPICE Meeting |
| 2015 | Dealing with Security Projects. SPICE and Security: Quo Vadis? | INTACS Gate4SPICE Meeting |
| 2015 | Extending Software Architectures From Safety To Security | Automotive Safety & Security 2015 |
| 2015 | Extending Software Solutions from Safety to Security | VDA Automotive SYS 2015 |
| 2015 | Integrating Models as Software System Integrator | MES User Conference 2015 |
| 2015 | The Safe State: Design Patterns and Degradation Mechanisms for Fail-Operational Systems | Safetronic 2015 |
| 2014 | Mixed criticality systems in the automotive domain using multi-core processors and AUTOSAR as software architecture | TÜV Süd, safe.tech 2014 |
| 2014 | Partitioning and Multi-Core: Tackling Increased Complexity in Safety-Critical Environments | Safetronic 2014 |
| 2014 | Software Architectures for Safety Projects using Multicore Processors in an AUTOSAR environment | Embedded World 2014 |
| 2013 | Standardized Software Architectures for Safety ECUs | Forum Funktionale Sicherheit 2013 |
| 2013 | Systematic and Automated Verification of Configurable Software in Safety Critical Systems | Automotive SYS 2013 |
| 2012 | Freedom from Interference for AUTOSAR-based ECUs: a partitioned AUTOSAR stack | Automotive Safety & Security 2012 |
| 2012 | Statische und semantische Verifikationstechnologien zum Beweis von Code-Eigenschaften | Iqnite 2012 |
| 2012 | Targeting Freedom from Runtime Errors for AUTOSAR-Based ECU Software | MathWorks Automotive 2012 |
| 2011 | EB tresos AutoCore and Polyspace – Measuring AUTOSAR software with a view towards ISO 26262 | Polyspace User Group Meeting 2011 |
| 2011 | Merging Automotive SPICE, ISO 26262 and AUTOSAR – as software Tier-1 | VDA Automotive SYS 2011 |
Trade press
Articles
Contributions to the German and international engineering press.
| Year | Title | Publication |
|---|---|---|
| 2016 | Alles sicher? | elektroniknet.de |
| 2015 | Architekturen und Degradadionsmechanismen für das verlässliche Verhalten im Fehlerfall | Elektronik automotive |
| 2011 | ISO-26262-konforme Komponenten ohne Laufzeitfehler | Elektronik & Praxis |
| 2011 | Removing Run-Time Errors from AUTOSAR Components Using Polyspace Code Verifiers | MathWorks MATLAB Digest |
