首页> 外文会议>IEEE International Requirements Engineering Conference >Discovering and Understanding Multi-dimensional Correlations among Certification Requirements with application to Risk Assessment
【24h】

Discovering and Understanding Multi-dimensional Correlations among Certification Requirements with application to Risk Assessment

机译:应用于风险评估的认证要求之间的多维相关性的多维相关性

获取原文

摘要

In this paper we outline our approach to discover and understand multi-dimensional correlations among regulatory security certification requirements in the context of a complex software system. A thorough understanding of these correlations is necessary to assure that diverse constraints imposed by numerous certification requirements are adequate for collectively contributing to emergent security properties in a highly interconnected socio-technical environment. We elaborate on methodological support to discover an exhaustive set of applicable certification requirements in a given operational scenario of the target software system. We then describe techniques to systematically understand the multi-dimensional correlations among these requirements with application to security risk assessment. The case study of applying our approach to a regulatory certification process of The United States Department of Defense (DoD) is presented.
机译:在本文中,我们概述了我们在复杂软件系统的上下文中发现和理解规范安全认证要求之间的多维相关性的方法。对这些相关性的彻底了解是为了确保众多认证要求所施加的各种限制,足以在高度相互互联的社会技术环境中集体促进紧急安全性质。我们详细阐述了方法支持,以发现目标软件系统的给定操作场景中的详尽适用的认证要求。然后,我们描述了通过应用于安全风险评估的这些要求之间系统地理解多维相关性的技术。提出了对美国国防部(国防部)的监管认证过程应用案例研究。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号