首页> 外文期刊>European journal of information systems >Secure Activity Resource Coordination: Empirical Evidence Of Enhanced Security Awareness In Designing Secure Business Processes
【24h】

Secure Activity Resource Coordination: Empirical Evidence Of Enhanced Security Awareness In Designing Secure Business Processes

机译:安全活动资源协调:设计安全业务流程中增强的安全意识的经验证据

获取原文
获取原文并翻译 | 示例
           

摘要

Systems development methodologies incorporate security requirements as an afterthought in the non-functional requirements of systems. The lack of appropriate access control on information exchange among business activities can leave organizations vulnerable to information assurance threats. The gap between systems development and systems security leads to software development efforts that lack an understanding of security risks. We address the research question: how can we incorporate security as a functional requirement in the analysis and modeling of business processes? This study extends the Semantic approach to Secure Collaborative Inter-Organizational eBusiness Processes in D'Aubeterre et al. (2008). In this study, we develop the secure activity resource coordination (SARC) artifact for a real-world business process. We show how SARC can be used to create business process models characterized by the secure exchange of information within and across organizational boundaries. We present an empirical evaluation of the SARC artifact against the Enriched-Use Case (Siponen et al., 2006) and standard UML-Activity Diagram to demonstrate the utility of the proposed design method.
机译:系统开发方法将安全性要求作为对系统非功能性要求的考虑。在业务活动之间缺乏对信息交换的适当访问控制,可能会使组织容易受到信息保证威胁的攻击。系统开发和系统安全性之间的鸿沟导致缺乏对安全风险的了解的软件开发工作。我们解决了以下研究问题:我们如何将安全性作为功能需求纳入业务流程的分析和建模中?这项研究将语义方法扩展到了D'Aubeterre等人的安全组织间协作电子商务流程中。 (2008)。在这项研究中,我们为实际业务流程开发了安全活动资源协调(SARC)工件。我们将展示如何使用SARC创建以在组织边界内和跨组织边界安全地交换信息为特征的业务流程模型。我们针对丰富的使用案例(Siponen等,2006)和标准的UML活动图,对SARC工件进行了经验评估,以证明所提出的设计方法的实用性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号