CYBERSECURITY EXPERTISE


We build trust

DESIGN, DEVELOP & MANUFACTURE COMMUNICATION PRODUCTS IN CONNECTED FACTORIES

THE CHALLENGE OF CYBERSECURITY WITH SEVERAL DIMENSIONS


The pandemic has accelerated the digital transformation already underway for several years. Among the sectors of activity, industry is particularly affected by this transformation with the Factory of the Future. This new vision of the industrial sector opens up the possibilities with great technological reinforcement: with more automated, more connected factories, the multiplication of sensors, robots and cobots, the cloud, real-time data processing, machine learning or intelligence artificial. Technologies that give shape to the IIOT – Industrial Internet Of Things – and make the factory of the future a reality.

This development calls for another: with the proliferation of IT systems alongside OT systems (Operational Technology, industrial equipment), the industrial system is more exposed to cyber threats. ACTIA, an industrial company, took the measures of these risks by implementing a global approach and solutions to secure its entire ecosystem (infrastructure, on -board systems, personal, third -party organizations, …).

Indeed, beyond the technical security aspects of ACTIA’s production environment, meeting these challenges requires addressing cybersecurity more broadly, at the level of business processes, people, supply chains, etc.

Beyond the protection objective, ACTIA incorporates cybersecurity as a strategic axis of its development, as a pillar of its on -board systems, as a condition for the success of its factory of the future, and integrating it into the sheet on the road to its innovations.

The group has put itself into battle order to treat cybersecurity as a condition for the success of its Factory of the Future and a guarantee of the reliability of its on-board systems.

CYBERSECURITY : A NEW CORE AUTOMOTIVE CONCERN


Cybersecurity is a new challenge for transport professionals. This sector remains particularly vulnerable not only because it is part of a chain of multiple players and but also because it generates and shares huge volumes of data.

With the rise of digitisation, threats for all links of the supply chain are increasing. The geolocation of trucks, administrative and regulatory monitoring of drivers, vehicle maintenance, and all of the exchanged data are all potential targets of cyberattacks, hacking and theft. The consequences can be catastrophic for professionals in the sector.

The advent of connected and autonomous vehicles or intelligent freight is exacerbating the threats. Modern transport is becoming increasingly computerised and therefore faces the risk of cyberattacks. Trucks are increasingly program-controlled, interconnected and semi-autonomous.

This is why manufacturers and equipment suppliers such as ACTIA are taking system security very seriously. ACTIA has developed a holistic approach that integrates cybersecurity into the life cycle of its products intended for heavy goods vehicles. The Group is thus contributing to limiting the risks of successful cyberattacks against trucks.

ACTIA IS FUTURE-READY FOR CYBERSECURITY NORMS AND STANDARDS


 

BY PARTICIPATING IN THE DRAFTING OF STANDARDS & REGULATIONS


ACTIA is participating in the drafting of ISO / SAE 21434 standards on the cybersecurity of road vehicles, as well as UNECE WP29 regulations on cybersecurity and software updates for road vehicles. The Group’s experts are representing ACTIA in global standardisation communities and are involved in the drafting of standards.

ACTIA is thus prepared to incorporate the latest standardisation requirements right from the design process for its products, and is able to offer its customers products and services that meet the latest standards.

ACTIA IS ISO 27001-CERTIFIED


ACTIA France, Spain, Belgium, Tunisia and USA entities are ISO 27001-certified or in the process of certification. ISO 27001 certification actions and the deployment of different cybersecurity standards, in particular ISO/SAE 21434, are collectively carried out by optimising synergies and sharing opportunities.

ACTIA INCORPORATES SECURITY INTO ITS ORGANISATION


ACTIA IS ORGANISED AROUND A TEAM DEDICATED TO THE INFORMATION SECURITY MANAGEMENT SYSTEM (ISMS)



This multidisciplinary team manages the company’s information, data and physical security: from purchasing, human resources, development, maintenance, etc. These experts define, deploy, verify and improve the information security policy.

ACTIA HAS A TEAM DEDICATED TO PRODUCT SECURITY


This team ensures that cybersecurity is properly taken into account from end to end of the design, development and manufacturing cycle of the products offered by the Group. But it does not stop there, because ACTIA also supports its customers in protecting against cybersecurity risks, and in particular with regard to its telematics products. For example, the TGU-R telematics unit, dedicated to the truck, bus and special machinery market, comes with a “cybersecurity manual”. This manual allows customers to develop their applications independently and in line with the product security constraints.

ACTIA RELIES ON A CYBERSECURITY COORDINATOR


For each project, ACTIA appoints a dedicated cybersecurity project manager, who is the point of contact for cybersecurity issues. He/she organises collaborative work on risk assessment and compliance with current requirements. He/she provides assistance during the definition of threats and product security targets.

ACTIA INTEGRATES CYBERSECURITY AT EVERY STAGE OF THE LIFE OF PRODUCTS AND SERVICES


The ultimate goal is to assess and address the cybersecurity risk. ACTIA has put in place a security risk assessment method based on ISO SAE 21434, which helps to determine levels of cybersecurity risk and reduce them. By applying this method throughout the life cycle, ACTIA ensures that cybersecurity risks always remain acceptable.

Through ongoing collaboration with its customers, ACTIA can integrate a holistic approach focused on cybersecurity risks across all our products and services and throughout the vehicle life cycle: from design to decommissioning. ACTIA has the ability to apply ISO SAE 21434, the new global cybersecurity engineering standard for automotive projects.

The Group thus assists its customers in proving the compliance of their vehicles with the UN regulations on cybersecurity for road vehicles. ACTIA has experience in the certification of products according to the Common Criteria for Information Technology Security (ISO 15408), up to level EAL4+.

CYBERSECURITY STEP BY STEP:


 

1. IN THE TENDERING PHASE


ACTIA can assist customers in defining their cybersecurity strategy. It can offer a secure product architecture and a security concept that meets all customer requirements, including those imposed by regulations or standards (such as GDPR, UN-ECE regulation, ISO SAE 21434).

2. DESIGN & DEVELOPMENT


ACTIA can reinforce its product development effort with the activities and documentation provided for in ISO SAE 21434. The Group is currently mapping cybersecurity activities and requirements in the product design and development process. This allows cybersecurity to be integrated into all other disciplines, while establishing best practices in this area.

3. POST-DEVELOPMENT


The security of the production environment is also part of ACTIA’s know-how and the Colomiers (France) manufacturing plant has been ISO 27001-certified since 2018. Within a contractual framework, ACTIA is able to maintain the cybersecurity of its products throughout their use, by monitoring the state of cybersecurity, analysing vulnerabilities and responding to events.

CYBERSECURITY IN ACTIA PRODUCTS: DEFENCE IN DEPTH


From the design phase, ACTIA products can be planned to include measures that strengthen the cybersecurity of the system, including:

  • Authentification & integrity check of the software at start up,
  • Storage of encryption keys, generation of random numbers,
  • Communication encryption,
  • Secure software updates,
  • Mutual authentication between the product and remote servers.

QUESTION?REQUEST?PROJECT?


Our team is at your disposal to answer your questions as soon as possible.

Quality

picto check
More than a requirement, quality is one of the ACTIA group's true values, and is shared by all its employees in a certified environment. Our experience and our expertise in the automotive and aeronautics sectors mean that our hardware and software designs provide a high level of quality.

Innovation

picto ampoule
Since it was founded in 1986, ACTIA's spirit and policy of innovation have kept the group a length ahead of the competition. The inventor of electronic diagnostics and a pioneer in the field of vehicle architecture, particularly multiplexed architecture, ACTIA innovates across its skills spectrum to stand out from the crowd, remain independent and maintain its leading position in the field.

Service

picto client
Service is an integral part of ACTIA's culture. It is rooted in the group's international dimension, which provides each and every one of our customers with local support that's synonymous with proximity, fast response and flexibility. There's a special ACTIA service for each of our products, systems and solutions that answers our customers' needs closely.

We use cookies on our website. Some of them are essential for the operation of the site, while others help us to improve this site and the user experience (tracking cookies). You can decide for yourself whether you want to allow cookies or not. Please note that if you reject them, you may not be able to use all the functionalities of the site.