Requirements engineering for trust management: Model, methodology, and reasoning

被引:0
|
作者
Giorgini P. [1 ]
Massacci F. [1 ]
Mylopoulos J. [1 ]
Zannone N. [1 ]
机构
[1] Department of Information and Communication Technology, University of Trento, Trento
关键词
Agent-oriented software; Privilege management; Requirements Engineering; Security Engineering; Trust models for business and organizations; Verification and validation of software;
D O I
10.1007/s10207-006-0005-7
中图分类号
学科分类号
摘要
A number of recent proposals aim to incorporate security engineering into mainstream software engineering. Yet, capturing trust and security requirements at an organizational level, as opposed to an IT system level, and mapping these into security and trust management policies is still an open problem. This paper proposes a set of concepts founded on the notions of ownership, permission, and trust and intended for requirements modeling. It also extends Tropos, an agent-oriented software engineering methodology, to support security requirements engineering. These concepts are formalized and are shown to support the automatic verification of security and trust requirements using Datalog. To make the discussion more concrete, we illustrate the proposal with a Health Care case study. © Springer-Verlag 2006.
引用
收藏
页码:257 / 274
页数:17
相关论文
共 50 条
  • [1] Methodology proposal for specifying records management requirements from requirements engineering
    del Castillo Guevara, Jorge
    Torres Ponjuan, Deborah
    INVESTIGACION BIBLIOTECOLOGICA, 2022, 36 (91): : 33 - 48
  • [2] Filling the gap between requirements engineering and public key/trust management infrastructures
    Giorgini, P
    Massacci, F
    Mylopoulos, J
    Zannone, N
    PUBLIC KEY INFRASTRUCTURE, PROCEEDINGS, 2004, 3093 : 98 - 111
  • [3] Representing and reasoning about preferences in requirements engineering
    Sotirios Liaskos
    Sheila A. McIlraith
    Shirin Sohrabi
    John Mylopoulos
    Requirements Engineering, 2011, 16 : 227 - 249
  • [4] A methodology for requirements engineering process development
    Jiang, L
    Eberlein, A
    Far, BH
    11TH IEEE INTERNATIONAL CONFERENCE AND WORKSHOP ON THE ENGINEERING OF COMPUTER-BASED SYSTEMS, PROCEEDINGS, 2004, : 263 - 272
  • [5] A methodology for the selection of requirements engineering techniques
    Li Jiang
    Armin Eberlein
    Behrouz H. Far
    Majid Mousavi
    Software & Systems Modeling, 2008, 7 : 303 - 328
  • [6] A methodology for the selection of requirements engineering techniques
    Jiang, Li
    Eberlein, Armin
    Far, Behrouz H.
    Mousavi, Majid
    SOFTWARE AND SYSTEMS MODELING, 2008, 7 (03) : 303 - 328
  • [7] A requirements engineering methodology for knowledge management solutions: integrating technical and social aspects
    Levy, Meira
    Hadar, Irit
    Aviv, Itzhak
    REQUIREMENTS ENGINEERING, 2019, 24 (04) : 503 - 521
  • [8] Representing and reasoning about preferences in requirements engineering
    Liaskos, Sotirios
    McIlraith, Sheila A.
    Sohrabi, Shirin
    Mylopoulos, John
    REQUIREMENTS ENGINEERING, 2011, 16 (03) : 227 - 249
  • [9] A requirements engineering methodology for knowledge management solutions: integrating technical and social aspects
    Meira Levy
    Irit Hadar
    Itzhak Aviv
    Requirements Engineering, 2019, 24 : 503 - 521
  • [10] Affect and Affective Trust in Agile Requirements Engineering
    Alhubaishy, Abdulaziz
    Benedicenti, Luigi
    2018 1ST INTERNATIONAL WORKSHOP ON AFFECTIVE COMPUTING FOR REQUIREMENTS ENGINEERING (AFFECTRE 2018), 2018, : 9 - 12