Title :
A Security Engineering Process based on Patterns
Author :
Hatebur, Denis ; Heisel, Maritta ; Schmidt, Holger
Author_Institution :
ITESYS Inst. fur Tech. Syst. GmbH, Dortmund
Abstract :
We present a security engineering process based on security problem frames and concretized security problem frames. Both kinds of frames constitute patterns for analyzing security problems and associated solution approaches. They are arranged in a pattern system that makes dependencies between them explicit. We describe step-by-step how the pattern system can be used to analyze a given security problem and how solution approaches can be found. Further, we introduce a new frame that focuses on the privacy requirement anonymity.
Keywords :
data privacy; security of data; software engineering; concretized security problem frames; pattern system; privacy requirement anonymity; security engineering process; software development; Application software; Data engineering; Data security; Databases; Expert systems; Pattern analysis; Privacy; Programming; Software engineering; Strontium;
Conference_Titel :
Database and Expert Systems Applications, 2007. DEXA '07. 18th International Workshop on
Conference_Location :
Regensburg
Print_ISBN :
978-0-7695-2932-5
DOI :
10.1109/DEXA.2007.36