Challenges for Risk and Security Modelling in Enterprise Architecture

Forfatter
Grov, Gudmund
Mancini, Federico
Mestl, Elsie Margrethe
Publisert
2019-11-19
Emneord
Sikkerhetsarkitektur
Sikkerhetsanalyse
Analyseverktøy
Automatisering
Permalenke
http://hdl.handle.net/20.500.12242/2853
DOI
10.1007/978-3-030-35151-9_14
Samling
Articles
Description
Grov, Gudmund; Mancini, Federico; Mestl, Elsie Margrethe. Challenges for Risk and Security Modelling in Enterprise Architecture. Lecture Notes in Business Information Processing 2019 ;Volum 369. s. 215-225
1772319.pdf
Size: 947k
Sammendrag
From our experience cooperating with the Norwegian Armed Forces, we outline two interconnected challenges for modelling risk and security in an enterprise architecture: (1) modelling what is protected and why it is protected with sufficient detail whilst being simple enough to facilitate analysis; and (2) establishing automated support for analysing and reasoning about the security models, something we deem crucial to exploit the full potential of an enterprise security architecture. In addition, we sketch out our approach to tackle these challenges and outline our future direction of work.
View Meta Data