Is your programme ready for ISO 21434? One question per step. Mark honestly where you stand.
1. Item Definition. Do you have your component boundary and interfaces formally defined?
2. TARA. Have you conducted a threat analysis covering all communication interfaces?
3. Cybersecurity Concept. Do you have a cybersecurity concept accepted by your OEM client?
4. Requirements. Are cybersecurity requirements traceable from risk analysis to implementation in your PLM?
5. Testing. Do you have fuzzing and pentest evidence generated during development?
6. CSMS. Do you have a post-SOP vulnerability management process in place?