Enhancement of a Business Model with a Business Contextual Risk Model

被引:1
|
作者
Kamagate, Zakariya [1 ,2 ]
Simonin, Jacques [1 ]
Kermarrec, Yvon [1 ]
机构
[1] Technopole Brest Iroise, Lab STICC UMR CNRS 6285, IMT Atlant, F-29238 Brest, France
[2] ESATIC, LASTIC DRIT, 18 BP 1501 Abidjan 18, Abidjan, Cote Ivoire
关键词
Risk; Models; Business scenario; Security; Threats; Software engineering; Enterprise architecture; Model-Driven Engineering; Model-driven architecture; ENTERPRISE ARCHITECTURE; INTEGRATION; MANAGEMENT;
D O I
10.1007/978-3-030-68887-5_20
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, we propose an approach of security risk-driven contextual model for software systems development. The approach is model-driven using enterprise business architecture as the basis for the contextual models definition, associating security risk concerns. Enterprise Architecture (EA) enables the description of an organisation's structure, its business and its underlying Information System. By using a Model-Driven Engineering (MDE) approach such as Model-Driven Architecture (MDA), we dene an architecture for models, and we provide a set of guidelines for structuring specications expressed as (EA) contextual models. Then these models are enhanced to integrate security aspects in the overall development process. The proposal aims to analyse enterprise security from a business-oriented view and define security requirements inherited by the lower architectures, particularly IS architecture. The approach provides a meta-model of business contextual risk with a security management process, consisting on a systematic method, guiding to risk modelling and risk treatment strategies.
引用
收藏
页码:325 / 334
页数:10
相关论文
共 50 条
  • [41] Boundaries of the business model within business groups
    Di Carlo E.
    Fortuna F.
    Testarmata S.
    Journal of Management & Governance, 2016, 20 (2) : 321 - 362
  • [42] Understanding Business Models and Business Model Risks
    Shi, Yuwei
    Manning, Tom
    JOURNAL OF PRIVATE EQUITY, 2009, 12 (02): : 49 - 59
  • [43] AI business model: an integrative business approach
    Mishra S.
    Tripathi A.R.
    Journal of Innovation and Entrepreneurship, 10 (1)
  • [44] Managerial risk taking: a conceptual model for business use
    Nepomuceno Nobre, Liana Holanda
    Grable, John E.
    da Silva, Wesley Vieira
    Nobre, Fabio Chaves
    MANAGEMENT DECISION, 2018, 56 (11) : 2487 - 2501
  • [45] Model of the business intelligence system for credit risk analysis
    Gazdic, Tamara
    Kascelan, Ljiljana
    2013 36TH INTERNATIONAL CONVENTION ON INFORMATION AND COMMUNICATION TECHNOLOGY, ELECTRONICS AND MICROELECTRONICS (MIPRO), 2013, : 1155 - 1160
  • [46] Ruin probabilities for a risk model with two lines of business
    Guo, Junyi
    Lv, Tongling
    Meng, Qingbin
    INSURANCE MATHEMATICS & ECONOMICS, 2006, 39 (03): : 406 - 407
  • [47] SECURITY-ORIENTED MODEL OF BUSINESS RISK ASSESSMENT
    Hnylytska, Larysa
    Franchuk, Vasyl
    Melnyk, Stepan
    Nakonechna, Nataliya
    Leskiv, Halyna
    Hobela, Volodymyr
    FINANCIAL AND CREDIT ACTIVITY-PROBLEMS OF THEORY AND PRACTICE, 2022, 4 (45): : 202 - 210
  • [48] A CONCEPTUAL MODEL FOR LINKING BUSINESS RISK WITH AUDIT STRATEGY
    Vilsanoiu, Daniel
    PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ACCOUNTING AND MANAGEMENT INFORMATION SYSTEMS (AMIS 2012), 2012, : 222 - 232
  • [49] A Markov Risk Model with Two Classes of Insurance Business
    Zhao, Fei
    Yue, Rong-Xian
    Wang, Han-Xing
    STOCHASTIC ANALYSIS AND APPLICATIONS, 2011, 29 (06) : 1102 - 1110
  • [50] The business model and risk control of warehouse financing in China
    Feng, GZ
    Yu, Y
    Zhao, WY
    Wang, SM
    PROCEEDINGS OF THE IEEE INTERNATIONAL CONFERENCE ON E-COMMERCE TECHNOLOGY FOR DYNAMIC E-BUSINESS, 2004, : 58 - 65