Specifying Security Goals of Component Based Systems : An End-User Perspective

被引:0
|
作者
Khan, Khaled M. [1 ]
Han, Jun [2 ]
机构
[1] Qatar Univ, Dept Comp Sci & Engn, POB 2713, Doha, Qatar
[2] Swinburne Univ Technol, Fac ICT, Hawthorn, Vic 3122, Australia
关键词
D O I
10.1109/ICCBSS.2008.22
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
This paper treats security from a software engineering point of view. Security issues of software components are usually handled at the two levels of development abstractions: by the security experts during the component design, and by the software engineers during the composition of an application system. Security experts identify the threats of the component, define the security policies and functions. On the other hand, the software engineers are more interested in the compositional impact and conformity of the security properties designed and implemented by the security experts. This paper identifies a third level of abstraction: security from the end-users' perspective. This paper argues that the end-users of the system should know the specific security objectives actually achieved at the system-level. This paper makes the following three specific contributions in this regard: (i) a need for a separate view of security at the end-user level; (ii) the formulation of security goals; (iii) the derivation of security goals for automatic processing.
引用
收藏
页码:101 / +
页数:2
相关论文
共 50 条
  • [1] Organisational security culture: Extending the end-user perspective
    Ruighaver, A. B.
    Maynard, S. B.
    Chang, S.
    COMPUTERS & SECURITY, 2007, 26 (01) : 56 - 62
  • [2] Visual End-User Security
    Stobert, Elizabeth
    Biddle, Robert
    2012 IEEE SYMPOSIUM ON VISUAL LANGUAGES AND HUMAN-CENTRIC COMPUTING (VL/HCC), 2012, : 233 - 234
  • [3] An end-user perspective on file-sharing systems
    Lee, J
    COMMUNICATIONS OF THE ACM, 2003, 46 (02) : 49 - 53
  • [4] The quality of user experiences for mobile recommendation systems: an end-user perspective
    Chong, Woon Kian
    Ma, Zhuang
    INDUSTRIAL MANAGEMENT & DATA SYSTEMS, 2021, 121 (05) : 1063 - 1081
  • [5] Component-based technologies for end-user development
    Morch, AI
    Stevens, G
    Won, M
    Klann, M
    Dittrich, Y
    Wulf, V
    COMMUNICATIONS OF THE ACM, 2004, 47 (09) : 59 - 62
  • [6] Information Systems Security and End-User Consciousness - A Strategic Matter
    Cavallari, Maurizio
    MANAGEMENT OF THE INTERCONNECTED WORLD, 2010, : 251 - 258
  • [7] Opportunities and challenges with microphysiological systems: a pharma end-user perspective
    Ewart, Lorna
    Roth, Adrian
    NATURE REVIEWS DRUG DISCOVERY, 2021, 20 (05) : 327 - 328
  • [8] Component-based end-user database design for ecologists
    Judith Bayard Cushing
    Nalini Nadkarni
    Michael Finch
    Anne Fiala
    Emerson Murphy-Hill
    Lois Delcambre
    David Maier
    Journal of Intelligent Information Systems, 2007, 29 : 7 - 24
  • [9] Component-based end-user database design for ecologists
    Cushing, Judith Bayard
    Nadkarni, Nalini
    Finch, Michael
    Fiala, Anne
    Murphy-Hill, Emerson
    Delcambre, Lois
    Maier, David
    JOURNAL OF INTELLIGENT INFORMATION SYSTEMS, 2007, 29 (01) : 7 - 24
  • [10] END-USER CHEMISTS - EXPERIENCES AND PERSPECTIVE
    MANFRE, RJ
    ABSTRACTS OF PAPERS OF THE AMERICAN CHEMICAL SOCIETY, 1985, 189 (APR-): : 33 - CINF