Business Process Security Analysis – Design Time, Run Time, Audit Time
Keyword(s):
AbstractThis paper reports on approaches and tool support for security and compliance analysis of executable business processes, so-called workflows, employed in the GESINE project. Specifically, focusing on the business layer and the corresponding workflow entities along the business process management lifecycle (i. e., workflow model, instance and event log), the techniques reported on in this paper cover the design time, run time and audit time analysis. Their goal is to verify the adherence to security requirements, such as the four-eyes principle and separation and binding of duties. Altogether, the complementary techniques described in this paper enable a holistic approach to ensure the security of workflows.
2020 ◽
Vol 139
(5)
◽
pp. 78-92
2019 ◽
Vol 25
(6)
◽
pp. 1273-1290
◽
Keyword(s):
2015 ◽
Vol 5
(2)
◽
pp. 80-104
◽
2019 ◽
Vol 25
(6)
◽
pp. 1291-1316
◽