SecOnto: Ontological Representation of Security Directives

被引:0
|
作者
Castiglione, Gianpietro [1 ]
Bella, Giampaolo [1 ]
Santamaria, Daniele Francesco [1 ]
机构
[1] Univ Studi Catania, Catania, Italy
关键词
Semantic web; Reasoning; NIS; 2; GDPR; FRAMEWORK;
D O I
10.1016/j.cose.2024.104150
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The current digital landscape demands robust security requirements and, for doing so, the institutions enact complex security directives to protect the citizens and the infrastructures, particularly in the European Union. These directives aim to safeguard data and harmonise security across the European region, and institutions must navigate this evolving legal landscape in order to implement and keep up-to-date the prescribed security measures. However, understanding and implementing these directives towards full compliance can be difficult and expensive. Ontological representation can be employed to represent and operationalise such security directives, ultimately contributing to the effectiveness and efficiency of the compliance process. Ontologies in fact promote a structured approach to represent knowledge, making the applicable directives more simply understandable by humans and more readily processable by machines. This article introduces SecOnto, a novel methodology for representing security directives as ontologies. SecOnto breaks down the process of transforming the juridical language of modern security directives into full-fledged ontologies by means of five semi-automated steps: Preprocessing, Interpretation, Structuring, Representation and Verification. Each step is described and validated by means of operational examples based upon Directive 2022/2555 of the European Parliament and of the Council of the European Union on security of network and information systems, better known as NIS 2.
引用
收藏
页数:13
相关论文
共 50 条
  • [31] THE CONCEPT OF ONTOLOGICAL SECURITY: CRITICAL ANALYSIS
    Chudinov, Sergey Ivanovich
    SGEM 2015, BOOK 3: ANTHROPOLOGY, ARCHAEOLOGY, HISTORY AND PHILOSOPHY, 2015, : 711 - 717
  • [32] ONTOLOGICAL (IN) SECURITY IN THE EU: THE CASE OF CYPRUS
    Hursoy, Siret
    Ozun Colluoglu, Z. Melis
    ANKARA AVRUPA CALISMALARI DERGISI-ANKARA REVIEW OF EUROPEAN STUDIES, 2022, 21 (01): : 167 - 193
  • [33] States and ontological security: A historical rethinking
    Zarakol, Ayse
    COOPERATION AND CONFLICT, 2017, 52 (01) : 48 - 68
  • [34] Mobile communication technologies and ontological security
    Amigo, Bernardo
    Osorio, Francisco
    Cecilia Bravo, Maria
    CONVERGENCIA-REVISTA DE CIENCIAS SOCIALES, 2017, (74): : 39 - 61
  • [35] TELEVISION, ONTOLOGICAL SECURITY AND THE TRANSITIONAL OBJECT
    SILVERSTONE, R
    MEDIA CULTURE & SOCIETY, 1993, 15 (04) : 573 - 598
  • [36] An Ontological Approach to Computer System Security
    Wang, Ju An
    Guo, Michael M.
    Camargo, Jairo
    INFORMATION SECURITY JOURNAL, 2010, 19 (02): : 61 - 73
  • [37] Brexit, existential anxiety and ontological (in)security
    Browning, Christopher S.
    EUROPEAN SECURITY, 2018, 27 (03) : 336 - 355
  • [38] Ontological (in)Security and African Pentecostalism in Ireland
    Maguire, Mark
    Murphy, Fiona
    ETHNOS, 2016, 81 (05) : 842 - 864
  • [39] The Concept of Anxiety in Ontological Security Studies
    Krickel-Choi, Nina C.
    INTERNATIONAL STUDIES REVIEW, 2022, 24 (03)
  • [40] Ontological Security as a Factor in Balkan Geopolitics
    Prorokovic, Dusan
    STUDIA EUROPEJSKIE-STUDIES IN EUROPEAN AFFAIRS, 2024, 28 (03): : 73 - 87