• DocumentCode
    2617899
  • Title

    A comparative review of i-based and use case-based security modelling initiatives

  • Author

    Daramola, Olawande ; Pan, Yushan ; Karpati, Peter ; Sindre, Guttorm

  • Author_Institution
    Dept. of Comput. & Inf. Sci., Norwegian Univ. of Sci. & Technol., Trondheim, Norway
  • fYear
    2012
  • fDate
    16-18 May 2012
  • Firstpage
    1
  • Lastpage
    12
  • Abstract
    Security requirements elicitation and modelling are integral for the successful development of secure systems. However, there are a lot of similar yet not identical approaches that currently exist for security requirements modelling, which is confusing for researchers and practitioners hence some characterisation will be useful to give a better overview and understanding of advantages and disadvantages of various approaches. This paper provides a comparative review of i*-based and use case - based security modelling initiatives, using a characterisation framework with several dimensions. Our findings show that both categories of initiatives have significant conceptual similarities in the aspect of modelling language and method process, and coverage of security requirements modelling notions. They have conceptual differences in the aspect of: representation perspective, kind of security requirements engineering activities that are supported, the quality of specification that is generated and the specification techniques used, and the degree of support for software evolution.
  • Keywords
    formal specification; industrial property; safety-critical software; simulation languages; software process improvement; systems analysis; conceptual differences; conceptual similarities; i*-based security modelling initiatives; modelling language; secure system development; security requirements elicitation; security requirements modelling; software evolution support; specification quality; specification techniques; use case-based security modelling initiatives; Adaptation models; Analytical models; Ontologies; Security; Software; Strontium; Unified modeling language; i-based modelling; security requirements; security requirements modelling; use-case based modelling;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Research Challenges in Information Science (RCIS), 2012 Sixth International Conference on
  • Conference_Location
    Valencia
  • ISSN
    2151-1349
  • Print_ISBN
    978-1-4577-1936-3
  • Electronic_ISBN
    2151-1349
  • Type

    conf

  • DOI
    10.1109/RCIS.2012.6240434
  • Filename
    6240434