Modelling the interplay of security, privacy and trust in sociotechnical systems: a computer-aided design approach

被引:0
|
作者
Mattia Salnitri
Konstantinos Angelopoulos
Michalis Pavlidis
Vasiliki Diamantopoulou
Haralambos Mouratidis
Paolo Giorgini
机构
[1] Politecnico di Milano,Department of Electronic, Computer Science and Bio
[2] Collibra,Engineering
[3] University of Brighton,Centre for Secure, Intelligent and Usable Systems
[4] University of the Aegean,Department of Information and Communication Systems Engineering
[5] University of Trento,Department of Information Engineering and Computer Science
来源
关键词
Security; Privacy; Trust; Sociotechnical systems; CASE tools;
D O I
暂无
中图分类号
学科分类号
摘要
Personal data have become a central asset for multiple enterprise applications and online services offered by private companies, public organisations or a combination of both. The sensitivity of such data and the continuously growing legislation that accompanies their management dictate the development of methods that allow the development of more secure, trustworthy software systems with focus on privacy protection. The contribution of this paper is the definition of a novel requirements engineering method that supports both early and late requirements specification, giving emphasis on security, privacy and trust. The novelty of our work is that it provides the means for software designers and security experts to analyse the system-to-be from multiple aspects, starting from identifying high-level goals to the definition of business process composition, and elicitation of mechanisms to fortify the system from external threats. The method is supported by two CASE tools. To demonstrate the applicability and usefulness of our work, the paper shows its applications to a real-world case study.
引用
收藏
页码:467 / 491
页数:24
相关论文
共 50 条
  • [1] Modelling the interplay of security, privacy and trust in sociotechnical systems: a computer-aided design approach
    Salnitri, Mattia
    Angelopoulos, Konstantinos
    Pavlidis, Michalis
    Diamantopoulou, Vasiliki
    Mouratidis, Haralambos
    Giorgini, Paolo
    [J]. SOFTWARE AND SYSTEMS MODELING, 2020, 19 (02): : 467 - 491
  • [2] SOCIOTECHNICAL SYSTEMS-DESIGN PRINCIPLES FOR COMPUTER-AIDED ENGINEERING
    PURSER, RE
    [J]. TECHNOVATION, 1992, 12 (06) : 379 - 386
  • [3] ON MODELLING INTERACTIVE SYSTEMS OF COMPUTER-AIDED DESIGN.
    Dobre, V.
    Constantinescu, P.
    Oprea, M.
    Rusu, E.
    [J]. Economic Computation and Economic Cybernetics Studies and Research, 1987, 22 (01): : 19 - 27
  • [4] Computer-aided modelling and bridge design
    [J]. 2000, Concrete Soc, Slough, Engl (34):
  • [5] COMPUTER-AIDED DESIGN SYSTEMS
    GALLINA, G
    [J]. CASABELLA, 1988, 52 (548): : R2 - R8
  • [6] What is security in computer-aided automation systems?
    Schweizer, G.
    [J]. IT - Information Technology, 1980, 22 (06): : 245 - 249
  • [7] A COMPUTER-AIDED PROTOCOL DESIGN BY PRODUCTION SYSTEMS-APPROACH
    HUANG, CM
    CHANG, YI
    LIU, MT
    [J]. IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 1990, 8 (09) : 1748 - 1762
  • [8] SYSTEM APPROACH TO COMPUTER-AIDED DESIGN
    KOSTELIC, A
    [J]. STROJARSTVO, 1977, 19 (03): : 119 - 126
  • [9] AN APPROACH TO COMPUTER-AIDED PARAMETRIC DESIGN
    ROLLER, D
    [J]. COMPUTER-AIDED DESIGN, 1991, 23 (05) : 385 - 391
  • [10] COMPUTER-AIDED ARCHITECTURAL DESIGN SYSTEMS
    UNO, S
    [J]. JAPAN ANNUAL REVIEWS IN ELECTRONICS COMPUTERS & TELECOMMUNICATIONS, 1983, 7 : 225 - 239