• DocumentCode
    3781566
  • Title

    Towards compliant reference architectures by finding analogies and overlaps in compliance regulations

  • Author

    Eduardo B. Fernandez;Dereje Yimam

  • Author_Institution
    Dept. of Computer Science and Engineering, Florida Atlantic University, 777 Glades Rd, Boca Raton, U.S.A.
  • Volume
    4
  • fYear
    2015
  • fDate
    7/1/2015 12:00:00 AM
  • Firstpage
    435
  • Lastpage
    440
  • Abstract
    Business software is subject to a variety of regulations depending on the type of application. For example, software handling of medical records must follow HIPAA; software for financial applications must comply with Sarbanes Oxley, and so on. A close examination of the policies included in those regulations shows that they have analog and common aspects. Analog parts of regulations can be expressed as Semantic Analysis Patterns (SAPs), which can lead to building similar parts in other regulations. Overlapping parts usually correspond to security patterns and can be used to add security to other regulations. If we collect SAPs and security patterns in a catalog we can build reference architectures (RAs) for existing and new regulations. The resultant Compliant RAs (CRAs) can be used as guidelines for building compliant applications.
  • Keywords
    "Security","Unified modeling language","Software","Computer architecture","Business","Medical services","Monitoring"
  • Publisher
    ieee
  • Conference_Titel
    e-Business and Telecommunications (ICETE), 2015 12th International Joint Conference on
  • Type

    conf

  • Filename
    7518068