From Goal-Driven Security Requirements Engineering to Secure Design

被引:35
作者
Mouratidis, Haralambos [1 ]
Jurjens, Jan [2 ,3 ]
机构
[1] Univ E London, Sch Comp Informat Technol & Engn, London E16 2RD, England
[2] TU Dortmund, Dortmund, Germany
[3] Fraunhofer ISST, Dortmund, Germany
关键词
FRAMEWORK;
D O I
10.1002/int.20432
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Security of intelligent software systems is an important area of research. Although security is traditionally considered a technical issue; security is, in fact, a two-dimensional problem, which involves technical as well as social challenges. Goal-driven requirements engineering (GDRE) has been proposed in the literature as a suitable paradigm for the analysis of security issues and elicitation of security requirements at both the social and technical level. Nevertheless, there is lack of approaches, which would support the successful transformation of the elicited, using GDRE approaches, security requirements to design. This paper presents work that fills this gap. The presented approach, which is based on the integration of a goal-driven security requirements engineering (GDSRE) methodology and a model-based security engineering (MBSE) method, has some important features: (1) It provides a structured process to translate the results of the GDSRE method to a design, which satisfies these requirements; (2) it allows the simultaneous elicitation and analysis of the security requirements and the functional requirements of the system; (3) it allows consideration of both the social and the technical dimensions of the system's security; (4) it guides software engineers toward a design that is amenable to formal verification with the aid of automated tools. We demonstrate the applicability of the proposed approach at the hand of an application to the electronic purse standard common electronic purse specifications (released by Visa International and others). (c) 2010 Wiley Periodicals, Inc.
引用
收藏
页码:813 / 840
页数:28
相关论文
共 50 条
  • [41] The Relationship between Language Learning Strategies and Achievement Goal Orientations from Taiwanese Engineering Students in EFL Learning
    Shyr, Wen-Jye
    Feng, Hung-Yun
    Zeng, Li-Wen
    Hsieh, Ying-Ming
    Shih, Chia-Yu
    EURASIA JOURNAL OF MATHEMATICS SCIENCE AND TECHNOLOGY EDUCATION, 2017, 13 (10) : 6431 - 6443
  • [42] Framing Microgrid Design from a Business and Information Systems Engineering Perspective
    Sachs, Thomas
    Gruendler, Anna
    Rusic, Milos
    Fridgen, Gilbert
    BUSINESS & INFORMATION SYSTEMS ENGINEERING, 2019, 61 (06) : 729 - 744
  • [43] Framing Microgrid Design from a Business and Information Systems Engineering Perspective
    Thomas Sachs
    Anna Gründler
    Milos Rusic
    Gilbert Fridgen
    Business & Information Systems Engineering, 2019, 61 : 729 - 744
  • [44] Nine Principles for Design for the Developing World as Derived From the Engineering Literature
    Mattson, Christopher A.
    Wood, Amy E.
    JOURNAL OF MECHANICAL DESIGN, 2014, 136 (12)
  • [45] ELFIEP: Evolutionary Lifecycle Framework for Industrial Engineering Practice-A Ten Year Journey of Requirements Inspection Systems Design Methodology (RISDM)-
    Saito, Shinobu
    Aoyama, Mikio
    29TH IEEE INTERNATIONAL REQUIREMENTS ENGINEERING CONFERENCE (RE 2021), 2021, : 356 - 366
  • [46] Data-driven rational biosynthesis design: from molecules to cell factories
    Chen, Fu
    Yuan, Le
    Ding, Shaozhen
    Tian, Yu
    Hu, Qian-Nan
    BRIEFINGS IN BIOINFORMATICS, 2020, 21 (04) : 1238 - 1248
  • [47] Participatory Design of Health Technologies - Challenges and Requirements for Action from the Perspective of Health Services Research
    Kernebeck, Sven
    Busse, Theresa Sophie
    Fischer, Florian
    Ehlers, Jan P.
    GESUNDHEITSWESEN, 2024, 86 (08/09) : 553 - 558
  • [48] The Impact of Analogies on Creative Concept Generation: Lessons From an In Vivo Study in Engineering Design
    Chan, Joel
    Schunn, Christian
    COGNITIVE SCIENCE, 2015, 39 (01) : 126 - 155
  • [49] Implications of data-driven product design: From information age towards intelligence age
    Wang, Zuoxu
    Zheng, Pai
    Li, Xinyu
    Chen, Chun-Hsien
    ADVANCED ENGINEERING INFORMATICS, 2022, 54
  • [50] Multidisciplinary Design Optimization of Robotic Football Players by Undergraduate Students from Multiple Science and Engineering Programs
    El-Rahaiby, Adam Said
    Tovar, Andres
    2014 ASEE ANNUAL CONFERENCE, 2014,