Model-based privacy and security analysis with CARiSMA

Publikation: Konference artikel i Proceeding eller bog/rapport kapitelKonferencebidrag i proceedingsForskningpeer review

Abstract

We present CARiSMA, a tool that is originally designed to support model-based security analysis of IT systems. In our recent work, we added several new functionalities to CARiSMA to support the privacy of personal data. Moreover, we introduced a mechanism to assist the system designers to perform a CARiSMA analysis by automatically initializing an appropriate CARiSMA analysis concerning security and privacy requirements. The motivation for our work is Article 25 of Regulation (EU) 2016/679, which requires appropriate technical and organizational controls must be implemented for ensuring that, by default, the processing of personal data complies with the principles on processing of personal data. This implies that initially IT systems must be analyzed to verify if such principles are respected. System models allow the system developers to handle the complexity of systems and to focus on key aspects such as privacy and security. CARiSMA is available at http://carisma.umlsec.de and our screen cast at https://youtu.be/b5zeHig3ARw.
OriginalsprogEngelsk
TitelProceedings of the 2017 11th Joint Meeting on Foundations of Software Engineering - ESEC/FSE 2017
Antal sider5
ForlagAssociation for Computing Machinery
Publikationsdato2017
Sider989–993
ISBN (Trykt)9781450351058
DOI
StatusUdgivet - 2017
Udgivet eksterntJa
BegivenhedJoint Meeting on Foundations of Software Engineering - Paderborn, Tyskland
Varighed: 4 sep. 20178 sep. 2017
Konferencens nummer: 11
https://dblp.org/rec/conf/sigsoft/2017.html

Konference

KonferenceJoint Meeting on Foundations of Software Engineering
Nummer11
Land/OmrådeTyskland
ByPaderborn
Periode04/09/201708/09/2017
Internetadresse

Fingeraftryk

Dyk ned i forskningsemnerne om 'Model-based privacy and security analysis with CARiSMA'. Sammen danner de et unikt fingeraftryk.

Citationsformater