Sciweavers

DEXAW
2003
IEEE

A business process-driven approach to security engineering

14 years 4 months ago
A business process-driven approach to security engineering
A challenging task in security engineering concerns the specification and integration of security with other requirements at the top level of requirements engineering. Empirical studies show that it is common that end users are able to express their security needs at the business process level. Since many security requirements originate at this level, it is natural to try to capture and express them within the context of business models where end users feel most comfortable and where they conceptually belong. In this paper we develop these views, present an ongoing work intended to create a UML-based and business process-driven framework for the development of security-critical systems and propose an approach to a rigorous treatment of security requirements supported by formal methods.
Antonio Mana, José A. Montenegro, Carsten R
Added 04 Jul 2010
Updated 04 Jul 2010
Type Conference
Year 2003
Where DEXAW
Authors Antonio Mana, José A. Montenegro, Carsten Rudolph, José Luis Vivas
Comments (0)