• DocumentCode
    2757175
  • Title

    Managing changes with legacy security engineering processes

  • Author

    Felix, Edith ; Delande, Olivier ; Massacci, Fabio ; Paci, Federica

  • Author_Institution
    Thales, Palaiseau, France
  • fYear
    2011
  • fDate
    10-12 July 2011
  • Firstpage
    137
  • Lastpage
    142
  • Abstract
    Managing changes in Security Engineering is a difficult task: the analyst must keep the consistency between security knowledge such as assets, attacks and treatments to stakeholders´ goals and security requirements. Research-wise the usual solution is an integrated methodology in which risk, security requirements and architectural solutions are addressed within the same tooling environment and changes can be easily propagated. This solution cannot work in practice as the steps of security engineering process requires to use artefacts (documents, models, data bases) and manipulate tools that are disjoint and cannot be fully integrated for a variety of reasons (separate engineering domains, outsourcing, confidentiality, etc.). We call such processes legacy security engineering processes. In this paper, we propose a change management framework for legacy security engineering processes. The key idea is to separate concerns between the requirements, risk and architectural domains while keeping an orchestrated view (as opposed to an integrated view). We identify some mapping concepts among the domains so that little knowledge is required from the requirement manager about the other domains, and similarly for security risk manager and the system designer: they can stick to their well known (and possibly certified) internal process. This minimal set of concepts is the interface between the legacy processes. The processes are then orchestrated in the sense that when a change affects a concept of the interface, the change is propagated to the other domain. We illustrate this example by using the risk modeling language (Security DSML) from Thales Research and the security requirement language (SI*) from the Univ. of Trento.
  • Keywords
    formal specification; management of change; risk management; security of data; software architecture; software maintenance; specification languages; Security DSML; architectural domain; architectural solution; asset; attack; change management; legacy security engineering process; mapping concept; risk modeling language; security knowledge; security requirement; security risk management; tooling environment; Business; Computational modeling; Control systems; Design methodology; IEC standards; ISO standards; Security; Requirements; Security engineering; Security risks; System and software engineering life cycle; Tooling;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Intelligence and Security Informatics (ISI), 2011 IEEE International Conference on
  • Conference_Location
    Beijing
  • Print_ISBN
    978-1-4577-0082-8
  • Type

    conf

  • DOI
    10.1109/ISI.2011.5984064
  • Filename
    5984064