首页> 外文会议>International Conference on Information Systems Engineering >A Methodology for Aligning Usability and Security in Systems and Services
【24h】

A Methodology for Aligning Usability and Security in Systems and Services

机译:一种用于对齐系统和服务中的可用性和安全性的方法

获取原文

摘要

Conflict between usability and security is a widely recognized research problem in industry and academia. Failure to design systems, which are simultaneously usable and secure, may cause incidents where human errors lead to security breaches. Academic research identifies that usability versus security conflict can be best handled at the requirement and design stage of system development. However, there exist no practical solutions to incorporate usability and security during requirements and design stage of system development specifically in case of information systems. This paper is an attempt in this regard i.e. to incorporate the human factors (usability) while designing security features of the system. The main contribution of this paper is a novel methodology to handle usability versus security conflict during the early stages of system development, and documenting them in form of design patterns for reuse. We also present an instance of usable security design pattern.
机译:可用性与安全之间的冲突是工业和学术界的广泛认可的研究问题。未能设计系统,同时可用和安全,可能导致人类错误导致安全漏洞的事件。学术研究确定了系统开发的要求和设计阶段可以最佳地处理可用性与安全冲突。然而,在信息系统的情况下,没有实际解决在系统开发的要求和设计阶段的可用性和安全性。本文是在这方面的尝试,即在设计系统的安全特征时纳入人为因素(可用性)。本文的主要贡献是一种新的方法,可以在系统开发的早期阶段处理可用性与安全冲突,并以设计模式的形式记录它们的重用。我们还提供了可用安全设计模式的实例。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号