Authors
Christos Tsigkanos, Liliana Pasquale, Claudio Menghi, Carlo Ghezzi, Bashar Nuseibeh
Publication date
2014/8/25
Conference
2014 IEEE 22nd International Requirements Engineering Conference (RE)
Pages
203-212
Publisher
IEEE
Description
Adaptive security systems aim to protect critical assets in the face of changes in their operational environment. We have argued that incorporating an explicit representation of the environment's topology enables reasoning on the location of assets being protected and the proximity of potentially harmful agents. This paper proposes to engineer topology aware adaptive security systems by identifying violations of security requirements that may be caused by topological changes, and selecting a set of security controls that prevent such violations. Our approach focuses on physical topologies; it maintains at runtime a live representation of the topology which is updated when assets or agents move, or when the structure of the physical space is altered. When the topology changes, we look ahead at a subset of the future system states. These states are reachable when the agents move within the physical space. If security …
Total citations
20142015201620172018201920202021202214567654
Scholar articles
C Tsigkanos, L Pasquale, C Menghi, C Ghezzi… - 2014 IEEE 22nd International Requirements …, 2014