首页> 外文会议>Advanced information systems engineering >Secure Information Systems Engineering: Experiences and Lessons Learned from Two Health Care Projects
【24h】

Secure Information Systems Engineering: Experiences and Lessons Learned from Two Health Care Projects

机译:安全信息系统工程:从两个医疗项目中获得的经验和教训

获取原文
获取原文并翻译 | 示例

摘要

In CAiSE 2006, we had presented a framework to support development of secure information systems. The framework was based on the integration of two security-aware approaches, the Secure Tropos methodology, which provides an approach for security requirements elicitation, and the UMLsec approach, which allows one to include the security requirements into design models and offers tools for security analysis. In this paper we reflect on the usage of this framework and we report our experiences of applying it to two different industrial case studies from the health care domain. However, due to lack of space we only describe in this paper one of the case studies. Our findings demonstrate that the support of the framework for the consideration of security issues from the early stages and throughout the development process can result in a substantial improvement in the security of the analysed systems.
机译:在CAiSE 2006中,我们提出了一个框架来支持安全信息系统的开发。该框架基于两种安全意识方法的集成:Secure Tropos方法论(提供一种用于提出安全需求的方法)和UMLsec方法,该方法允许将一种安全要求纳入设计模型并提供用于安全性分析的工具。 。在本文中,我们反思了此框架的用法,并报告了将其应用于医疗保健领域的两个不同工业案例研究的经验。但是,由于篇幅所限,我们仅在本文中描述其中一个案例研究。我们的研究结果表明,从早期阶段到整个开发过程中对框架进行考虑的安全性支持,可以大大提高被分析系统的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号