Integrating Security Risk Management into Business Process Management for the Cloud

被引:8
|
作者
Goettelmann, Elio [1 ,2 ]
Mayer, Nicolas [2 ]
Godart, Claude [1 ]
机构
[1] Univ Lorraine, LORIA INRIA Grand Est, Nancy, France
[2] CRP Henri Tudor, L-1855 Luxembourg, Luxembourg
关键词
Business Process Management; Security Risk Management; Cloud Computing;
D O I
10.1109/CBI.2014.29
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Security issues are still preventing wider adoption of cloud computing, especially for businesses which are handling sensitive information. Indeed, by outsourcing its information system (IS), a company can lose control over its infrastructure, its software or even its data. Therefore, new methods and tools need to be defined to respond to this challenge. In this paper we propose to integrate Security Risk Management approaches into Business Process Management to effectively treat security issues at the early phases of the Information System construction. We focus on cloud brokers, emerging actors of the cloud delivery model, who enhance and aggregate existing cloud services to match them with their cloud consumers' requirements. Our main goal is to provide them with tools and techniques to increase the global security level of an IS through different risk treatment strategies.
引用
收藏
页码:86 / 93
页数:8
相关论文
共 50 条
  • [31] A role-based process security model in business process management
    Kim, Kwanghoon
    Kim, Changmain
    Advances in Computational Methods in Sciences and Engineering 2005, Vols 4 A & 4 B, 2005, 4A-4B : 1596 - 1599
  • [32] Risk management for business process reengineering projects
    Kliem, RL
    INFORMATION SYSTEMS MANAGEMENT, 2000, 17 (04) : 71 - 73
  • [33] Terminology for Process Safety, Security, and Risk Management
    Baybutt, Paul
    PROCESS SAFETY PROGRESS, 2014, 33 (04) : 405 - 406
  • [34] Cloud-based Platform for Collaborative Business Process Management
    Cocconi, Diego
    Roa, Jorge
    Villarreal, Pablo
    2017 XLIII LATIN AMERICAN COMPUTER CONFERENCE (CLEI), 2017,
  • [35] A Transformation-Based Approach to Business Process Management in the Cloud
    Evert Ferdinand Duipmans
    Luís Ferreira Pires
    Luiz Olavo Bonino da Silva Santos
    Journal of Grid Computing, 2014, 12 : 191 - 219
  • [36] Cloud Based Privacy Preserving Collaborative Business Process Management
    Schwarzbach, Bjoern
    Franczyk, Bogdan
    Petrich, Lucas
    Schier, Arkadius
    ten Hompel, Michael
    2016 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION TECHNOLOGY (CIT), 2016, : 716 - 723
  • [37] A Transformation-Based Approach to Business Process Management in the Cloud
    Duipmans, Evert Ferdinand
    Pires, Luis Ferreira
    Santos, Luiz Olavo Bonino da Silva
    JOURNAL OF GRID COMPUTING, 2014, 12 (02) : 191 - 219
  • [38] BPM in Cloud Architectures: Business Process Management with SLAs and Events
    Muthusamy, Vinod
    Jacobsen, Hans-Arno
    BUSINESS PROCESS MANAGEMENT, 2010, 6336 : 5 - 10
  • [39] Study on Security Management-oriented Business Process Model
    Yu Zhiwei
    Ji Zhongyuan
    MANUFACTURING SYSTEMS AND INDUSTRY APPLICATIONS, 2011, 267 : 183 - 188
  • [40] Research on the Security Model for E-business Process Management
    Yu Xin
    Xia MingPing
    Yu, Bai
    2009 IEEE 16TH INTERNATIONAL CONFERENCE ON INDUSTRIAL ENGINEERING AND ENGINEERING MANAGEMENT, VOLS 1 AND 2, PROCEEDINGS, 2009, : 369 - +