Cristin-resultat-ID: 928859
Sist endret: 15. juni 2012, 10:05
NVI-rapporteringsår: 2012
Resultat
Vitenskapelig artikkel
2012

Security Requirements Engineering for Secure Business Processes

Bidragsytere:
  • Elda Paja
  • Paolo Giorgini
  • Stéphane Paul og
  • Per Håkon Meland

Tidsskrift

Lecture Notes in Business Information Processing
ISSN 1865-1348
e-ISSN 1865-1356
NVI-nivå 1

Om resultatet

Vitenskapelig artikkel
Publiseringsår: 2012
Volum: 106
Hefte: part 2
Sider: 77 - 89

Beskrivelse Beskrivelse

Tittel

Security Requirements Engineering for Secure Business Processes

Sammendrag

Traditional approaches to business process modelling deal with security only after the business process has been defined, namely without considering security needs as input for the definition. This may require very costly corrections if new security issues are discovered. Moreover, security concerns are mainly considered at the system level without providing the rationale for their existence, that is, without taking into account the social or organizational perspective, which is essential for business processes related to considerably large organizations. In this paper, we introduce a framework for engineering secure business processes. We propose a security requirements engineering approach to model and analyze participants’ objectives and interactions, and then derive from them a set of security requirements that are used to annotate business processes. We capture security requirements through the notion of social commitment, that is a promise with contractual validity between participants. We illustrate the framework by means of an Air Traffic Management scenario.

Bidragsytere

Elda Paja

  • Tilknyttet:
    Forfatter
    ved Università degli Studi di Trento

Paolo Giorgini

  • Tilknyttet:
    Forfatter
    ved Università degli Studi di Trento

Stéphane Paul

  • Tilknyttet:
    Forfatter
    ved Frankrike

Per Håkon Meland

  • Tilknyttet:
    Forfatter
    ved Software Engineering, Safety and Security ved SINTEF AS
1 - 4 av 4