SecDSVL: a domain-specific visual language to support enterprise security modelling


Autoria(s): Almorsy, Mohamed; Grundy, John
Contribuinte(s)

Steel, Jim

Zhu, Liming

Data(s)

01/01/2014

Resumo

Enterprise security management requires capturing different security and IT systems' details, analyzing and enforcing these security details, and improving employed security to meet new risks. Adopting structured models greatly helps in simplifying and organizing security specification and enforcement processes. However, existing security models are generally limited to specific security details and do not deliver a comprehensive security model. They also often do not have user-friendly notations, being complicated extensions of existing modeling languages (such as UML). In this paper, we introduce a comprehensive Security Domain Specific Visual Language (SecDSVL), which enables capturing of key security details to support enterprise systems security management process. We discuss our SecDSVL, tool support and the model-based enterprise security management approach it supports, give a usage example, and present evaluation experiments of SecDSVL.

Identificador

http://hdl.handle.net/10536/DRO/DU:30081829

Idioma(s)

eng

Publicador

IEEE

Relação

http://dro.deakin.edu.au/eserv/DU:30081829/grundy-secdsvladomain-2014.pdf

http://dro.deakin.edu.au/eserv/DU:30081829/grundy-secdsvladomain-evid-2014.pdf

http://www.dx.doi.org/10.1109/ASWEC.2014.18

Direitos

2014, IEEE

Palavras-Chave #Science & Technology #Technology #Computer Science, Software Engineering #Computer Science #Domain Specific Visual Language #visual modelling tools #model-based security management
Tipo

Conference Paper