S172024 Requirements Design of Risk Management Support System for Process Safety Management Based on Business Process Model

2013 ◽  
Vol 2013 (0) ◽  
pp. _S172024-1-_S172024-5
Author(s):  
Teiji KITAJIMMA ◽  
Yukiyasu SHIMADA ◽  
Tetsuo FUCHINO
2015 ◽  
Vol 48 (8) ◽  
pp. 609-618 ◽  
Author(s):  
Yukiyasu Shimada ◽  
Teiji Kitajima ◽  
Tetsuo Fuchino ◽  
Kazuhiro Takeda

2015 ◽  
Vol 48 (8) ◽  
pp. 626-633 ◽  
Author(s):  
Tetsuo Fuchino ◽  
Kazuhiro Takeda ◽  
Yukiyasu Shimada ◽  
Atsushi Aoyama

2015 ◽  
pp. 897-919
Author(s):  
Olga Altuhhov ◽  
Raimundas Matulevičius ◽  
Naved Ahmed

Business process modelling is one of the major aspects in the modern information system development. Recently business process model and notation (BPMN) has become a standard technique to support this activity. Typically the BPMN notations are used to understand enterprise's business processes. However, limited work exists regarding how security concerns are addressed during the management of the business processes. This is a problem, since both business processes and security should be understood in parallel to support a development of the secure information systems. In the previous work we have analysed BPMN with respect to the domain model of the IS security risk management (ISSRM) and showed how the language constructs could be aligned to the concepts of the ISSRM domain model. In this paper the authors propose the BPMN extensions for security risk management based on the BPMN alignment to the ISSRM concepts. We illustrate how the extended BPMN could express assets, risks and risk treatment on few running examples related to the Internet store regarding the asset confidentiality, integrity and availability. Our proposal would allow system analysts to understand how to develop security requirements to secure important assets defined through business processes. The paper opens the possibility for business and security model interoperability and the model transformation between several modelling approaches (if these both are aligned to the ISSRM domain model).


Author(s):  
Miroslav Rusko ◽  
Dana Procházková

Role of Process Models in Safety Management Management is a type of human activity that establishes and ensures the system functions. The process models and project models are currently used for management support. Main aim of the process model is to describe the possible development tendencies as a consequence of certain phenomenon and to define functions and role of functions. The process models enable to compile procedures and scenarios for the situations that have similar features. They are suitable for planning, response and renovation. In this paper, we present the risk management model used at present in professional practice, two simple models from daily practice and the evaluation of process models for crisis management.


Author(s):  
Olga Altuhhov ◽  
Raimundas Matulevičius ◽  
Naved Ahmed

Business process modelling is one of the major aspects in the modern information system development. Recently business process model and notation (BPMN) has become a standard technique to support this activity. Typically the BPMN notations are used to understand enterprise's business processes. However, limited work exists regarding how security concerns are addressed during the management of the business processes. This is a problem, since both business processes and security should be understood in parallel to support a development of the secure information systems. In the previous work we have analysed BPMN with respect to the domain model of the IS security risk management (ISSRM) and showed how the language constructs could be aligned to the concepts of the ISSRM domain model. In this paper the authors propose the BPMN extensions for security risk management based on the BPMN alignment to the ISSRM concepts. We illustrate how the extended BPMN could express assets, risks and risk treatment on few running examples related to the Internet store regarding the asset confidentiality, integrity and availability. Our proposal would allow system analysts to understand how to develop security requirements to secure important assets defined through business processes. The paper opens the possibility for business and security model interoperability and the model transformation between several modelling approaches (if these both are aligned to the ISSRM domain model).


2015 ◽  
Vol 38 (3) ◽  
pp. 21
Author(s):  
Scot Ausborn ◽  
Julia Rotondo ◽  
Tim Mulcahy

Mapping the General Social Survey to the Generic Statistical Business Process Model: NORC's Experience


Sign in / Sign up

Export Citation Format

Share Document