Detecting conflicts between security and data-minimization requirements is a challenging task. Since such conflicts arise in the specific context of how the technical and organizational components of the target system interact with each other, their detection requires a thorough understanding of the underlying business processes. For example, a process may require anonymous execution for a task that writes data to a secure data storage, where the identity of the writer is needed for the purpose of accountability. To address this challenge, we propose an extension of the BPMN 2.0 business process modeling language to enable: (i) the specification of process-oriented data-minimization and security requirements, (ii) the detection of conflicts...
This paper presents an approach for binding security requirements to different BPMN task types to cr...
Process-aware information systems (PAIS) are systems relying on processes, which involve human and s...
Process-aware information systems (PAIS) are systems relying on processes, which involve human and s...
Requirements are inherently prone to conflicts. Security, data-minimization, and fairness requiremen...
Requirements are inherently prone to conflicts. Security, data-minimization, and fairness requiremen...
This Open Access book explores the dilemma-like stalemate between security and regulatory compliance...
Modern information systems are increasingly large and consist of an interplay of technical component...
Abstract—Business process modeling notations do not provide explicit means to model security aspects...
Modern information systems are increasingly large and consist of an interplay of technical component...
Modern information systems are increasingly large and consist of an interplay of technical component...
Modern information systems are increasingly large and consist of an interplay of technical component...
Abstract. Modern information systems are large-sized and comprise multiple heterogeneous and autonom...
Security requirements is the fundamental component in designing and defending IT systems against cyb...
The inclusion of security aspects in organizations is a crucial aspect to ensure compliance with bot...
Abstract Modern information systems are increasingly large and consist of an interplay of technical ...
This paper presents an approach for binding security requirements to different BPMN task types to cr...
Process-aware information systems (PAIS) are systems relying on processes, which involve human and s...
Process-aware information systems (PAIS) are systems relying on processes, which involve human and s...
Requirements are inherently prone to conflicts. Security, data-minimization, and fairness requiremen...
Requirements are inherently prone to conflicts. Security, data-minimization, and fairness requiremen...
This Open Access book explores the dilemma-like stalemate between security and regulatory compliance...
Modern information systems are increasingly large and consist of an interplay of technical component...
Abstract—Business process modeling notations do not provide explicit means to model security aspects...
Modern information systems are increasingly large and consist of an interplay of technical component...
Modern information systems are increasingly large and consist of an interplay of technical component...
Modern information systems are increasingly large and consist of an interplay of technical component...
Abstract. Modern information systems are large-sized and comprise multiple heterogeneous and autonom...
Security requirements is the fundamental component in designing and defending IT systems against cyb...
The inclusion of security aspects in organizations is a crucial aspect to ensure compliance with bot...
Abstract Modern information systems are increasingly large and consist of an interplay of technical ...
This paper presents an approach for binding security requirements to different BPMN task types to cr...
Process-aware information systems (PAIS) are systems relying on processes, which involve human and s...
Process-aware information systems (PAIS) are systems relying on processes, which involve human and s...