Security-Driven Information Flow Modelling for Component Integration in Complex Environments
Conceptualising and developing a new software solution is always a daunting task, even more so when existing technologies of international partners are to be integrated into a unique and holistic product, as is the case in many international research and innovation projects. The individual requirements not only of each tool, but of the resulting solution as a whole, must be considered as well as the problem domain. The approach presented in this paper uniquely combines existing structuring and modelling techniques, resulting in an information flow model and interface definition specifications appropriate for international projects. It is based on an approach developed for an EU cybersecurity project and for its specific requirements, but due to its flexibility seen as appropriate for other domains as well. Complex systems consisting of different existing software solutions are represented in a conceptual model of their internal processes and the connecting information flows, thereby facilitating further software development and adaptations. Additionally, the exact identification and accounting of all information flows are essential requirements for modelling according to security and privacy by design principles, as for example prescribed by privacy and impact assessment guides and required by the General Data Protection Regulation (GDPR).
Top- Kupfersberger, Veronika
- Schaberreiter, Thomas
- Quirchmayr, Gerald
Category |
Paper in Conference Proceedings or in Workshop Proceedings (Paper) |
Event Title |
10th International Conference on Advances in Information Technology (IAIT 2018) |
Divisions |
Multimedia Information Systems |
Event Location |
Bangkok, Thailand |
Event Type |
Conference |
Event Dates |
10-13 Dec 2018 |
Series Name |
Proceedings of the 10th International Conference on Advances in Information Technology (IAIT 2018) |
ISSN/ISBN |
978-1-4503-6568-0 |
Date |
10 December 2018 |
Export |