Risk-based Analysis of Business Process Executions

被引:2
|
作者
Alizadeh, Mandi [1 ]
Zannone, Nicola [1 ]
机构
[1] Eindhoven Univ Technol, NL-5600 MB Eindhoven, Netherlands
来源
CODASPY'16: PROCEEDINGS OF THE SIXTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY | 2016年
关键词
Auditing; Risk Assessment; Alignments; Conformance Checking;
D O I
10.1145/2857705.2857742
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Organizations need to monitor their business processes to ensure that what actually happens in the system is compliant with the prescribed behavior. Deviations from the prescribed behavior may correspond to violations of security requirements and expose organizations to severe risks. Thus, it is crucial for organizations to detect and address nonconforming behavior as early as possible. In this paper, we present an auditing framework that facilitates the analysis of process executions by detecting nonconforming behaviors and ranking them with respect to their criticality. Our framework employs conformance checking techniques to detect possible explanations of nonconformity. Based on such explanations, the framework assesses the criticality of nonconforming process executions based on historical logging data and context information.
引用
收藏
页码:130 / 132
页数:3
相关论文
共 50 条
  • [1] Development of Risk-Based Process Safety Indicators
    Khan, Faisal
    Abunada, Hasan
    John, David
    Benmosbah, Toufik
    PROCESS SAFETY PROGRESS, 2010, 29 (02) : 133 - 143
  • [2] Activity and Information Infrastructure for Risk-Based Process Design
    Kikuchi, Yasunori
    Hirao, Masahiko
    10TH INTERNATIONAL SYMPOSIUM ON PROCESS SYSTEMS ENGINEERING, 2009, 27 : 1023 - 1028
  • [3] ROGA - A New Method for Risk-Based Hazard Analysis: Part 1 - Deductive Hazard Analysis and Risk-Based Assessment by Using a Risk Graph
    Bock, Franz-Josef
    Haferkamp, Klaus
    CHEMIE INGENIEUR TECHNIK, 2015, 87 (1-2) : 95 - 102
  • [4] Performance evaluation of process industries resilience: Risk-based with a network approach
    Namvar, Hashem
    Bamdad, Shahrooz
    JOURNAL OF LOSS PREVENTION IN THE PROCESS INDUSTRIES, 2021, 71
  • [5] Automated analysis of security requirements through risk-based argumentation
    Yu, Yijun
    Franqueira, Virginia N. L.
    Tun, Thein Than
    Wieringa, Roel J.
    Nuseibeh, Bashar
    JOURNAL OF SYSTEMS AND SOFTWARE, 2015, 106 : 102 - 116
  • [6] A risk-based compliance approval process for engineering systems with considerations for safety equivalency
    Wilcox, RC
    Ayyub, BM
    PROBABILISTIC SAFETY ASSESSMENT AND MANAGEMENT, VOL I AND II, PROCEEDINGS, 2002, : 459 - 464
  • [7] Risk-based maintenance (RBM): A new approach for process plant inspection and maintenance
    Khan, FI
    Haddara, M
    PROCESS SAFETY PROGRESS, 2004, 23 (04) : 252 - 265
  • [8] A Risk-Based Analysis Approach to Sustainable Construction by Environmental Impacts
    Erdenekhuu, Nasanjargal
    Kocsi, Balazs
    Mate, Domician
    ENERGIES, 2022, 15 (18)
  • [9] Logistics Industry Convergence and Risk Assessment Based on Business Process
    Gong, Xianwen
    2016 INTERNATIONAL CONFERENCE ON LOGISTICS, INFORMATICS AND SERVICE SCIENCES (LISS' 2016), 2016,
  • [10] Risk-Based Sentencing and Predictive Accuracy
    Jesper Ryberg
    Ethical Theory and Moral Practice, 2020, 23 : 251 - 263