Title
A Security Pattern-Driven Approach toward the Automation of Risk Treatment in Business Processes.
Abstract
Risk management has become an essential mechanism for business and security analysts, since it enable the identification, evaluation and treatment of any threats, vulnerabilities, and risks to which organizations maybe be exposed. In this paper, we discuss the need to provide a standard representation of security countermeasures in order to automate the selection of countermeasures for business processes. The main contribution lies in the specification of security pattern as standard representation for countermeasures. Classical security pattern structure is extended to incorporate new features that enable the automatic selection of security patterns. Furthermore, a prototype has been developed which support the specification of security patterns in a graphical way.
Year
DOI
Venue
2012
10.1007/978-3-642-33018-6_2
INTERNATIONAL JOINT CONFERENCE CISIS'12 - ICEUTE'12 - SOCO'12 SPECIAL SESSIONS
Keywords
Field
DocType
Business Process Management,Security,Pattern,Risk Treatment,Automation
Countermeasure,Business process management,Business process,Automation,Risk management,Security pattern,Business,Process management,Vulnerability
Conference
Volume
ISSN
Citations 
189
2194-5357
1
PageRank 
References 
Authors
0.35
6
5
Name
Order
Citations
PageRank
Angel Jesus Varela-Vaca1146.09
Robert Warschofsky2494.29
Rafael M. Gasca313031.52
Sergio Pozo4113.31
Christoph Meinel52341319.90