Name

A cybersecurity risk analysis framework for systems with artificial intelligence components

Authors

J.M. Camacho, A. Couce-Vieira, D. Arroyo, D.R. Insua

Abstract

The introduction of the European Union Artificial Intelligence (AI) Act, the NIST AI Risk Management Framework, and related international norms and policy documents demand a better understanding and implementation of novel risk analysis issues when facing systems with AI components: dealing with new AI-related impacts; incorporating AI-based assets within the cyber architecture; considering AI-based security and recovery controls within the cybersecurity portfolio; and managing novel AI-based targeted attacks. This paper suggests solutions to such issues and integrates them within a broad novel framework to support risk analysis in systems with AI components and services. An example concerning automated driving systems illustrates the framework validating it conceptually.

Bibtex

@article{Camacho2025,
title = {A cybersecurity risk analysis framework for systems with artificial intelligence components},
author = {J.M. Camacho, A. Couce-Vieira, D. Arroyo, D.R. Insua},
url = {https://onlinelibrary.wiley.com/doi/10.1111/itor.70049?af=R},
year = {2025},
date = {2025-05-13},
urldate = {2025-05-13},
abstract = {The introduction of the European Union Artificial Intelligence (AI) Act, the NIST AI Risk Management Framework, and related international norms and policy documents demand a better understanding and implementation of novel risk analysis issues when facing systems with AI components: dealing with new AI-related impacts; incorporating AI-based assets within the cyber architecture; considering AI-based security and recovery controls within the cybersecurity portfolio; and managing novel AI-based targeted attacks. This paper suggests solutions to such issues and integrates them within a broad novel framework to support risk analysis in systems with AI components and services. An example concerning automated driving systems illustrates the framework validating it conceptually.},
keywords = {},
pubstate = {published},
tppubtype = {article}
}

Link