From Goal-Driven Security Requirements Engineering to Secure Design

被引:35
|
作者
Mouratidis, Haralambos [1 ]
Jurjens, Jan [2 ,3 ]
机构
[1] Univ E London, Sch Comp Informat Technol & Engn, London E16 2RD, England
[2] TU Dortmund, Dortmund, Germany
[3] Fraunhofer ISST, Dortmund, Germany
关键词
FRAMEWORK;
D O I
10.1002/int.20432
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Security of intelligent software systems is an important area of research. Although security is traditionally considered a technical issue; security is, in fact, a two-dimensional problem, which involves technical as well as social challenges. Goal-driven requirements engineering (GDRE) has been proposed in the literature as a suitable paradigm for the analysis of security issues and elicitation of security requirements at both the social and technical level. Nevertheless, there is lack of approaches, which would support the successful transformation of the elicited, using GDRE approaches, security requirements to design. This paper presents work that fills this gap. The presented approach, which is based on the integration of a goal-driven security requirements engineering (GDSRE) methodology and a model-based security engineering (MBSE) method, has some important features: (1) It provides a structured process to translate the results of the GDSRE method to a design, which satisfies these requirements; (2) it allows the simultaneous elicitation and analysis of the security requirements and the functional requirements of the system; (3) it allows consideration of both the social and the technical dimensions of the system's security; (4) it guides software engineers toward a design that is amenable to formal verification with the aid of automated tools. We demonstrate the applicability of the proposed approach at the hand of an application to the electronic purse standard common electronic purse specifications (released by Visa International and others). (c) 2010 Wiley Periodicals, Inc.
引用
收藏
页码:813 / 840
页数:28
相关论文
共 50 条
  • [41] Evolving towards 'Goal-driven orthodontics'
    Krishnan, Vinod
    JOURNAL OF THE WORLD FEDERATION OF ORTHODONTISTS, 2021, 10 (04) : 133 - 134
  • [42] Goal-Driven Business Process Derivation
    Ghose, Aditya K.
    Narendra, Nanjangud C.
    Ponnalagu, Karthikeyan
    Panda, Anurag
    Gohad, Atul
    SERVICE-ORIENTED COMPUTING, 2011, 7084 : 467 - 476
  • [43] Habitual versus goal-driven attention
    Jiang, Yuhong V.
    CORTEX, 2018, 102 : 107 - 120
  • [44] Goal-driven modulation of oculomotor capture
    Casimir J. H. Ludwig
    Iain D. Gilchrist
    Perception & Psychophysics, 2003, 65 : 1243 - 1251
  • [45] Discussion on the Goal-driven Teaching Method
    Li Bo
    Cao Fuyi
    Lv Haihua
    Li Fengpeng
    Yu Shun
    PROCEEDINGS OF THE 2015 INTERNATIONAL CONFERENCE ON ENGINEERING MANAGEMENT, ENGINEERING EDUCATION AND INFORMATION TECHNOLOGY, 2015, 36 : 289 - 293
  • [46] A toolbox for goal-driven knowledge acquisition
    Sleeman, D
    White, S
    PROCEEDINGS OF THE NINETEENTH ANNUAL CONFERENCE OF THE COGNITIVE SCIENCE SOCIETY, 1997, : 1054 - 1054
  • [47] Framework for Goal-Driven Negotiation Process
    Lei, Ying
    FOUNDATIONS OF INTELLIGENT SYSTEMS (ISKE 2011), 2011, 122 : 391 - 400
  • [48] Goal-Driven Sequential Data Abstraction
    Muhammad, Umar Riaz
    Yang, Yongxin
    Hospedales, Timothy M.
    Xiang, Tao
    Song, Yi-Zhe
    2019 IEEE/CVF INTERNATIONAL CONFERENCE ON COMPUTER VISION (ICCV 2019), 2019, : 71 - 80
  • [49] Goal-driven Command Recommendations for Analysts
    Aggarwal, Samarth
    Garg, Rohin
    Sancheti, Abhilasha
    Guda, Bhanu Prakash Reddy
    Burhanuddin, Iftikhar Ahamath
    RECSYS 2020: 14TH ACM CONFERENCE ON RECOMMENDER SYSTEMS, 2020, : 160 - 169
  • [50] Design of Sustainable Multifunctional Nanocoatings: A Goal-driven Multiscale Systems Approach
    Xiao, Jie
    Huang, Yinlun
    CHINESE JOURNAL OF CHEMICAL ENGINEERING, 2011, 19 (04) : 666 - 673