首页> 外文会议>Advanced Communications and Multimedia Security >THE CORAS APPROACH FOR MODEL-BASED RISK MANAGEMENT APPLIED TO E-COMMERCE DOMAIN
【24h】

THE CORAS APPROACH FOR MODEL-BASED RISK MANAGEMENT APPLIED TO E-COMMERCE DOMAIN

机译:应用于电子商务领域的基于模型的风险管理的CORAS方法

获取原文

摘要

The CORAS project develops a practical framework for model-based risk management of security critical systems by exploiting the synthesis of risk analysis methods with serniformal specification methods, supported by an adaptable tool-integration platform. The framework is also accompanied by the CORAS process, which is a systems development process based on the integration of RUP and a standardised security risk management process, and it is supported by an XML-based tool-integration platform. The CORAS framework and process are being validated in extensive user trials in the areas of e-commerce and telemedicine. This paper presents an overview of the CORAS framework, emphasising on the modelling approach followed in the first of the user trials (concerning the authentication mechanism of an e-commerce platform) and it provides some examples of the risk analyses employed in this context.
机译:CORAS项目通过在自适应工具集成平台的支持下,利用风险分析方法与直线形规范方法的综合,为安全性关键系统的基于模型的风险管理开发了一个实用的框架。该框架还附带有CORAS流程,该流程是基于RUP和标准化安全风险管理流程的集成的系统开发流程,并且受基于XML的工具集成平台的支持。 CORAS框架和过程已在电子商务和远程医疗领域的大量用户试验中得到验证。本文提供了CORAS框架的概述,重点介绍了第一个用户试用中所遵循的建模方法(关于电子商务平台的身份验证机制),并提供了一些在这种情况下使用的风险分析的示例。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号