Automated Certification for Compliant Cloud-based Business Processes

被引:29
|
作者
Accorsl, Rafael [1 ]
Lowis, Lutz [1 ]
Sato, Yoshinori [2 ]
机构
[1] Univ Freiburg, IIG Telemat, D-79098 Freiburg, Germany
[2] Hitachi, Yokohama Res Lab, Totsuka Ku, Kanagawa 2440817, Japan
关键词
Business process models; Cloud computing; Compliance certification; Audit; Petri nets; PETRI NETS; MODELS;
D O I
10.1007/s12599-011-0155-7
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A key problem in the deployment of large-scale, reliable cloud computing concerns the difficulty to certify the compliance of business processes operating in the cloud. Standard audit procedures such as SAS-70 and SAS-117 are hard to conduct for cloud-based processes. The paper proposes a novel approach to certify the compliance of business processes with regulatory requirements. The approach translates process models into their corresponding Petri net representations and checks them against requirements also expressed in this formalism. Being based on Petri nets, the approach provides well-founded evidence on adherence and, in case of noncompliance, indicates the possible vulnerabilities.
引用
收藏
页码:145 / 154
页数:10
相关论文
共 50 条
  • [21] Automated pressure transient analysis: A cloud-based approach
    Guo, Yonggui
    Mohamed, Ibrahim
    Zidane, Ali
    Panchal, Yashesh
    Abou-Sayed, Omar
    Abou-Sayed, Ahmed
    [J]. JOURNAL OF PETROLEUM SCIENCE AND ENGINEERING, 2021, 196
  • [22] Automated Testing of Cloud-Based Elastic Systems with AUToCLES
    Gambi, Alessio
    Hummer, Waldemar
    Dustdar, Schahram
    [J]. 2013 28TH IEEE/ACM INTERNATIONAL CONFERENCE ON AUTOMATED SOFTWARE ENGINEERING (ASE), 2013, : 714 - 717
  • [23] Research on Cloud-based Business English Practical system
    Wu, Jiayi
    Wang, Haijun
    [J]. PROCEEDINGS OF 3RD INTERNATIONAL SYMPOSIUM ON SOCIAL SCIENCE (ISSS 2017), 2017, 61 : 569 - 572
  • [24] Cloud-Based Business Intelligence for a Cellular IoT Network
    Holm, Johann Erich Wolfgang
    Moolman, Leon William
    van der Merwe, Gabriel Petrus Rossouw
    [J]. 2019 IEEE AFRICON, 2019,
  • [25] A Test-Based Incremental Security Certification Scheme for Cloud-Based Systems
    Anisetti, Marco
    Ardagna, Claudio A.
    Damiani, Ernesto
    [J]. 2015 IEEE 12TH INTERNATIONAL CONFERENCE ON SERVICES COMPUTING (SCC 2015), 2015, : 736 - 741
  • [26] Model-based Engineering Methods for Certification of Cloud-based Network Systems
    Ravindran, Kaliappa
    [J]. 2013 FIFTH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS AND NETWORKS (COMSNETS), 2013,
  • [27] Knowledge-theoretic Methods for Certification of Cloud-based Network Systems
    Ravindran, Kaliappa
    [J]. 2013 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2013, : 1280 - 1287
  • [28] Cloud Based Business Processes Orchestration
    Ciovica, Liviu
    Cristescu, Marian Pompiliu
    Fratila, Lucian Alexandru
    [J]. 21ST INTERNATIONAL ECONOMIC CONFERENCE OF SIBIU 2014, IECS 2014 PROSPECTS OF ECONOMIC RECOVERY IN A VOLATILE INTERNATIONAL CONTEXT: MAJOR OBSTACLES, INITIATIVES AND PROJECTS, 2014, 16 : 592 - 596
  • [29] Inter-Cloud Data Security for Secure Cloud-Based Business Collaborations
    Tsuda, Hiroshi
    Matsuo, Akihiko
    Abiru, Kenichi
    Hasebe, Takayuki
    [J]. FUJITSU SCIENTIFIC & TECHNICAL JOURNAL, 2012, 48 (02): : 169 - 176
  • [30] Inter-cloud data security for secure cloud-based business collaborations
    Tsuda, Hiroshi
    Matsuo, Akihiko
    Abiru, Kenichi
    Hasebe, Takayuki
    [J]. Fujitsu Scientific and Technical Journal, 2012, 48 (02): : 169 - 176