There is a need for research on the scientific base and engineering requirements for building trustworthy systems in dynamic environments. To address this need, we study risk analysis for access control from the viewpoint of trust and demonstrate how to extend access control architectures to incorporate trust-based reasoning. We present a theoretical model which allows to reason about and manage risk for access control systems. We also propose a formal approach for establishing and managing theories of trust. The approach can be used for assessing risk and decision making.
J. Ma, Luigi Logrippo, Kamel Adi, Serge Mankovski