Architectural Alignment of Access Control Requirements Extracted from Business Processes

Business processes and information systems evolve constantly and affect each other in non-trivial ways. Aligning security requirements between both is a challenging task. This work presents an automated approach to extract access control requirements from business processes with the purpose of trans...

Descripción completa

Detalles Bibliográficos
Otros Autores: Pilipchuk, Roman, author (author)
Formato: Libro electrónico
Idioma:Inglés
Publicado: Karlsruhe, Germany : KIT Scientific Publishing 2023.
Materias:
Ver en Biblioteca Universitat Ramon Llull:https://discovery.url.edu/permalink/34CSUC_URL/1im36ta/alma991009810784906719
Descripción
Sumario:Business processes and information systems evolve constantly and affect each other in non-trivial ways. Aligning security requirements between both is a challenging task. This work presents an automated approach to extract access control requirements from business processes with the purpose of transforming them into a. access permissions for role-based access control and b. architectural data flow constraints to identify violations of access control in enterprise application architectures.
Descripción Física:1 online resource (329 pages) : illustrations