Towards the Integration of Security Aspects into System Development Using Collaboration-Oriented Models

Linda Ariani Gunawan, Frank Alexander Kraemer and Peter Herrmann

International Conference on Security Technology (SecTech 2009), published in Communications in Computer and Information Science, Volume 58, p. 72-85, 2009. Springer.

Abstract Security, as an important feature of system design, should be taken into account early in the development of systems. We propose an extension of the SPACE engineering method in order to integrate security aspects into the system design and implementation phases. The integration of security mechanisms is facilitated by collaborations. Functional system specifications are represented by collaboration-oriented models which describe functionalities reaching over different physical components in one model. Countermeasures are also modeled by collaborations since security mechanisms are often collaborative structures themselves. Our approach includes an asset-oriented security analysis on the collaboration-oriented models in order to determine the level of protection needed. We illustrate our approach by the example of an e-sale system.

Springerlink via DOI

@inproceedings{GuHK:SecTech2009,
Author = {Linda Ariani Gunawan and Peter Herrmann and Frank Alexander Kraemer},
Booktitle = {Security Technology. Proceedings of the 2009 International Conference on Security Technology (SecTech 2009), Jeju Island, Korea, December 10-12, 2009},
Pages = {72-85},
Publisher = {Springer Berlin Heidelberg},
Series = {Communications in Computer and Information Science},
Title = {{Towards the Integration of Security Aspects into System Development using Collaboration-Oriented Models}},
Volume = {58},
Year = {2009}}