Architectural Alignment of Access Control Requirements Extracted from Business Processes

Author(s)
Pilipchuk, Roman
Language
EnglishAbstract
Business processes and information systems evolve constantly and affect each other in non-trivial ways. Aligning security requirements between both is a challenging task. This work presents an automated approach to extract access control requirements from business processes with the purpose of transforming them into a) access permissions for role-based access control and b) architectural data flow constraints to identify violations of access control in enterprise application architectures.
Keywords
Software Engineering; Enterprise Architecture; Zugriffskontrolle; Geschäftsprozesse; Access Control; Business ProcessesPublisher
KIT Scientific PublishingPublisher website
http://www.ksp.kit.edu/Publication date and place
2023Series
The Karlsruhe Series on Software Design and Quality,Classification
Maths for computer scientists