TY - GEN
T1 - An algorithm for the appraisal of assurance indicators for complex business processes
AU - Massacci, F.
AU - Yautsiukhin, A.
PY - 2007
Y1 - 2007
N2 - In order to provide certified security services we must provide indicators that can measure the level of assurance that a complex business process can offer. Unfortunately the formulation of security indicators is not amenable to efficient algorithms able to evaluate the level of assurance of complex process from its components. In this paper we show an algorithm based on FD-Graphs (a variant of directed hypergraphs) that can be used to compute in polynomial time (i) the overall assurance indicator of a complex business process from its components for arbitrary monotone composition functions, (ii) the subpart of the business process that is responsible for such assurance indicator (i.e. the best security alternative). © 2007 ACM.
AB - In order to provide certified security services we must provide indicators that can measure the level of assurance that a complex business process can offer. Unfortunately the formulation of security indicators is not amenable to efficient algorithms able to evaluate the level of assurance of complex process from its components. In this paper we show an algorithm based on FD-Graphs (a variant of directed hypergraphs) that can be used to compute in polynomial time (i) the overall assurance indicator of a complex business process from its components for arbitrary monotone composition functions, (ii) the subpart of the business process that is responsible for such assurance indicator (i.e. the best security alternative). © 2007 ACM.
UR - https://www.scopus.com/pages/publications/79959570085
UR - https://www.scopus.com/inward/citedby.url?scp=79959570085&partnerID=8YFLogxK
U2 - 10.1145/1314257.1314265
DO - 10.1145/1314257.1314265
M3 - Conference contribution
SN - 9781595938855
T3 - Proceedings of the ACM Conference on Computer and Communications Security
SP - 22
EP - 27
BT - QoP'07 - Proceedings of the 2007 ACM Workshop on Quality of Protection
T2 - 3rd Workshop on Quality of Protection, QoP'07, held in association with the 14th ACM Computer and Communications Security Conference, CCS'07
Y2 - 29 October 2007 through 29 October 2007
ER -