Integrating Security Risk Management into Business Process Management for the Cloud

被引:8
|
作者
Goettelmann, Elio [1 ,2 ]
Mayer, Nicolas [2 ]
Godart, Claude [1 ]
机构
[1] Univ Lorraine, LORIA INRIA Grand Est, Nancy, France
[2] CRP Henri Tudor, L-1855 Luxembourg, Luxembourg
关键词
Business Process Management; Security Risk Management; Cloud Computing;
D O I
10.1109/CBI.2014.29
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Security issues are still preventing wider adoption of cloud computing, especially for businesses which are handling sensitive information. Indeed, by outsourcing its information system (IS), a company can lose control over its infrastructure, its software or even its data. Therefore, new methods and tools need to be defined to respond to this challenge. In this paper we propose to integrate Security Risk Management approaches into Business Process Management to effectively treat security issues at the early phases of the Information System construction. We focus on cloud brokers, emerging actors of the cloud delivery model, who enhance and aggregate existing cloud services to match them with their cloud consumers' requirements. Our main goal is to provide them with tools and techniques to increase the global security level of an IS through different risk treatment strategies.
引用
收藏
页码:86 / 93
页数:8
相关论文
共 50 条
  • [21] An Improved Framework of Business Process Management System Which Integrating the Strategy Management
    Tian Guo-shuang
    Quan Liang
    2008 INTERNATIONAL CONFERENCE ON MANAGEMENT SCIENCE & ENGINEERING (15TH), VOLS I AND II, CONFERENCE PROCEEDINGS, 2008, : 256 - 261
  • [22] BPRIM: An integrated framework for business process management and risk management
    Lamine, Elyes
    Thabet, Rafika
    Sienou, Amadou
    Bork, Dominik
    Fontanili, Franck
    Pingaud, Herve
    COMPUTERS IN INDUSTRY, 2020, 117
  • [23] BPRIM: An integrated framework for business process management and risk management
    Lamine E.
    Thabet R.
    Sienou A.
    Bork D.
    Fontanili F.
    Pingaud H.
    Computers in Industry, 2019, 113
  • [24] Business process management as a tax risk identification and management method
    Bronkhorst, Evadne
    Leask, Elze
    EJOURNAL OF TAX RESEARCH, 2016, 14 (03): : 567 - 586
  • [25] Integrating Process Safety and Process Security Risk Management: Practitioner Insights for a Resilience-Oriented Framework
    Ab Rahim, Muhammad Shah
    Reniers, Genserik
    Yang, Ming
    Siwayanan, Parthiban
    PROCESSES, 2025, 13 (02)
  • [26] Integrating Information Security Policy Management with Corporate Risk Management for Strategic Alignment
    Corpuz, Maria Soto
    Barnes, Paul
    WMSCI 2010: 14TH WORLD MULTI-CONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL III, 2010, : 337 - 342
  • [27] A Survey of Scientific Approaches Considering the Integration of Security and Risk Aspects into Business Process Management
    Jakoubi, Stefan
    Tjoa, Simon
    Goluch, Gernot
    Quirchmayr, Gerald
    PROCEEDINGS OF THE 20TH INTERNATIONAL WORKSHOP ON DATABASE AND EXPERT SYSTEMS APPLICATION, 2009, : 127 - 132
  • [28] A Method of the Cloud Computing Security Management Risk Assessment
    Wang, Hongbing
    Liu, Feng
    Liu, Heng
    ADVANCES IN COMPUTER SCIENCE AND ENGINEERING, 2012, 141 : 609 - +
  • [29] Cloud Security: Analysis and Risk Management of VM Images
    Bindra, Gundeep Singh
    Singh, Prashant Kumar
    Kandwal, Krishen Kant
    Khanna, Seema
    PROCEEDING OF THE IEEE INTERNATIONAL CONFERENCE ON INFORMATION AND AUTOMATION, 2012, : 646 - 651
  • [30] Integrating the Internet of Things with the Business Process Management: Case study
    Dalli, Anouar
    Bri, Seddik
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2018, 18 (11): : 10 - 16