A Common Terminology for Software Risk Management

被引:4
作者
Masso, Jhon [1 ,2 ]
Garcia, Felix [1 ]
Pardo, Cesar [2 ]
Pino, Francisco J. [3 ]
Piattini, Mario [1 ]
机构
[1] Univ Castilla La Mancha, Inst Technol & Informat Syst, Alarcos Res Grp, Ciudad Real 13071, Castilla La Man, Spain
[2] Univ Cauca, Elect & Telecommun Engn Fac, GTI Res Grp, Calle 5 4-70, Popayan 190002, Cauca, Colombia
[3] Univ Cauca, IDIS Res Grp, Elect & Telecommun Engn Fac, Calle 5 4-70, Popayan 190002, Cauca, Colombia
关键词
Risk management; integrated risk management; risk ontology; ISO; 31000; ISO; 31000; ONTOLOGY; INFORMATION; PRINCIPLES; STANDARDS; FRAMEWORK; MATURITY; PROJECTS; SUCCESS; DESIGN;
D O I
10.1145/3498539
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
In order to improve and sustain their competitiveness over time, organisations nowadays need to undertake different initiatives to adopt frameworks, models and standards that will allow them to align and improve their business processes. In spite of these efforts, organisations may still encounter governance and management problems. This is where Risk Management (RM) can play a major role, since its purpose is to contribute to the creation and preservation of value in the context of the organisation's processes. RM is a complex and subjective activity that requires experience and a high level of knowledge about risks, and it is for this reason that standardisation institutions and researchers have made great efforts to define initiatives to overcome these challenges. However, the RM field nevertheless presents a lack of uniformity in its terms and concepts, due to the different contexts and scopes of application, a situation that can generate ambiguities and misunderstandings. To address these issues, this paper aims to present an ontology called SRMO (Software RiskManagement Ontology), which seeks to unify the terms and concepts associated with RM and provide an integrated and holistic view of risk. In doing so, the Pipeline framework has been applied in order to assure and verify the quality of the proposed ontology, and it has been implemented in Protege and validated by means of competency questions. Three application scenarios of this ontology demonstrating their usefulness in the software engineering field are presented in this paper. We believe that this ontology can be useful for organisations that are interested in: (i) establishing an RM strategy from an integrated approach, (ii) defining the elements that help to identify risks and the criteria that support decision-making in risk assessment, and (iii) helping the involved stakeholders during the process of risk management.
引用
收藏
页数:47
相关论文
共 50 条
  • [31] Risk management analysis in Scrum software projects
    Tavares, Breno Gontijo
    Sanches da Silva, Carlos Eduardo
    de Souza, Adler Diniz
    INTERNATIONAL TRANSACTIONS IN OPERATIONAL RESEARCH, 2019, 26 (05) : 1884 - 1905
  • [32] A Risk Management Tool for Agile Software Development
    Tavares, Breno Gontijo
    Keil, Mark
    Sanches da Silva, Carlos Eduardo
    de Souza, Adler Diniz
    JOURNAL OF COMPUTER INFORMATION SYSTEMS, 2021, 61 (06) : 561 - 570
  • [33] A Software System for Risk Management of Information Systems
    Boranbayev, Askar
    Boranbayev, Seilkhan
    Nurusheva, Assel
    Yersakhanov, Kuanysh
    Seitkulov, Yerzhan
    2018 IEEE 12TH INTERNATIONAL CONFERENCE ON APPLICATION OF INFORMATION AND COMMUNICATION TECHNOLOGIES (AICT), 2018, : 284 - 289
  • [34] Integrating software effort estimation with risk management
    Singal, Prerna
    Sharma, Prabha
    Kumari, A. Charan
    INTERNATIONAL JOURNAL OF SYSTEM ASSURANCE ENGINEERING AND MANAGEMENT, 2022, 13 (05) : 2413 - 2428
  • [35] Agile risk management using software agents
    Odzaly, Edzreena Edza
    Greer, Des
    Stewart, Darryl
    JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2018, 9 (03) : 823 - 841
  • [36] A Formalised Approach to the Management of Risk: A Conceptual Framework and Ontology
    Brownsword, Mike
    Setchi, Rossitza
    INTERNATIONAL JOURNAL OF KNOWLEDGE AND SYSTEMS SCIENCE, 2010, 1 (04) : 1 - 21
  • [37] Ontological approach to knowledge management in software maintenance
    Serna Montoya, Edgar
    REVISTA FACULTAD DE INGENIERIA-UNIVERSIDAD DE ANTIOQUIA, 2010, (55): : 184 - 193
  • [38] BIM-augmented reality integrated approach to risk management
    Alirezaei, Sahar
    Taghaddos, Hosein
    Ghorab, Khashayar
    Tak, Ala Nekouvaght
    Alirezaei, Sepideh
    AUTOMATION IN CONSTRUCTION, 2022, 141
  • [39] SERGE - Serious Game for the Education of Risk Management in Software Project Management
    Annunziata, Giusy
    Lambiase, Stefano
    Palomba, Fabio
    Ferrucci, Filomena
    2024 ACM/IEEE 44TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING: SOFTWARE ENGINEERING EDUCATION AND TRAINING, ICSE-SEET 2024, 2024, : 264 - 273
  • [40] An Optimized Risk Management Model Based on Software Risk Factors Analysis
    Ali, Hashim
    Akhtar, Nousheen
    Javed, Muhammad Younus
    ADVANCED SCIENCE LETTERS, 2018, 24 (04) : 2306 - 2311