Integrated identity and access management metamodel and pattern system for secure enterprise architecture

被引:2
|
作者
Nahar, Kamrun [1 ]
Gill, Asif Qumer [1 ]
机构
[1] Univ Technol Sydney, Sch Comp Sci, Ultimo, NSW 2007, Australia
关键词
Identity management; Access control management; Metamodel; Ontology; Enterprise architecture; Design science research; DESIGN SCIENCE; ONTOLOGY; LANGUAGES;
D O I
10.1016/j.datak.2022.102038
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Identity and access management (IAM) is one of the key components of the secure enterprise architecture for protecting the digital assets of the information systems. The challenge is: How to model an integrated IAM for a secure enterprise architecture to protect digital assets? This research aims to address this question and develops an ontology based integrated IAM metamodel for the secure digital enterprise architecture (EA). Business domain and technology agnostic characteristics of the developed IAM metamodel will allow it to develop IAM models for different types of information systems. Well-known design science research (DSR) methodology was adopted to conduct this research. The developed IAM metamodel is evaluated by using the demonstration method. Furthermore, as a part of the evaluation, a pattern system has been developed, consisting of eight IAM patterns. Each pattern offers a solution to a specific IAM related problem. The outcome of this research indicates that enterprise, IAM and information systems architects and academic researchers can use the proposed IAM metamodel and the pattern system to design and implement situation-specific IAM models within the overall context of a secure EA for information systems.
引用
收藏
页数:24
相关论文
共 50 条
  • [1] Developing an access control management metamodel for secure digital enterprise architecture modeling
    Nahar, Kamrun
    Gill, Asif Qumer
    Roach, Terry
    SECURITY AND PRIVACY, 2021, 4 (04)
  • [2] The Quality Management Metamodel in the Enterprise Architecture
    Roszkowski, Jerzy
    Roszkowska, Agata
    INFORMATION AND SOFTWARE TECHNOLOGIES (ICIST 2013), 2013, 403 : 11 - 21
  • [3] Dynamic Metamodel Approach for Government Enterprise Architecture Model Management
    Abu Bakar, Nur Azaliah
    Yaacob, Suraya
    Hussein, Surya Sumarni
    Nordin, Anizah
    Sallehuddin, Hasimi
    FIFTH INFORMATION SYSTEMS INTERNATIONAL CONFERENCE, 2019, 161 : 894 - 902
  • [4] Secure Governance in Enterprise Architecture - Access Control Perspective
    Gaaloul, Khaled
    El Kharbili, Marwane
    Proper, Henderik A.
    2013 3RD INTERNATIONAL SYMPOSIUM ISKO-MAGHREB, 2013,
  • [5] Leveraging Dynamic Information for Identity and Access Management: An Extension of Current Enterprise IAM Architecture
    Puchta, Alexander
    Groll, Sebastian
    Pernul, Guenther
    ICISSP: PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2021, : 611 - 618
  • [6] An Identity and Access Management Architecture in Cloud
    Yang, Yan
    Chen, Xingyuan
    Wang, Guangxia
    Cao, Lifeng
    2014 SEVENTH INTERNATIONAL SYMPOSIUM ON COMPUTATIONAL INTELLIGENCE AND DESIGN (ISCID 2014), VOL 2, 2014,
  • [7] Enterprise architecture-based metamodel for machine learning projects and its management
    Takeuchi, Hironori
    Husen, Jati H.
    Tun, Hnin Thandar
    Washizaki, Hironori
    Yoshioka, Nobukazu
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2024, 161 : 135 - 145
  • [8] An Extensible Enterprise Architecture Pattern for Turnaround Management
    Ellermann, Katharina
    Steeger, Jonas
    Steffens, Ulrike
    2018 IEEE 22ND INTERNATIONAL ENTERPRISE DISTRIBUTED OBJECT COMPUTING CONFERENCE WORKSHOPS (EDOCW 2018), 2018, : 170 - 175
  • [9] Decision Support oriented Enterprise Architecture Metamodel Management using Classification Trees
    Franke, Ulrik
    Ullberg, Johan
    Sommestad, Teodor
    Lagerstrom, Robert
    Johnson, Pontus
    2009 13TH ENTERPRISE DISTRIBUTED OBJECT COMPUTING CONFERENCE WORKSHOPS (EDOCW 2009), 2009, : 328 - 335
  • [10] ARCHITECTURE FOR AN INTEGRATED, EXTENSIBLE ENTERPRISE MANAGEMENT DIRECTOR
    STRUTT, C
    SHURTLEFF, DG
    INTEGRATED NETWORK MANAGEMENT, 1, 1989, : 61 - 72