Managing legal compliance through security requirements across service provider chains: A case study on the German federal data protection act
Zusammenfassung
Future service customer-provider as well as inter-provider relationships will see the increased application of dynamic service composition providing a broad diversity of functions. However, currently existing deficiencies of processes and tools force service providers and service consumers to trade off profitability against security compliance. This is predominately due to the ignorance or manual resolution of policy and configuration dependencies, caused by distinct terminologies and languages used at both the service provider and service customer. We report on the research design for the Collaborative Security Requirement Management System (CoSeRMaS), a collaborative and semi-automated tool to manage, define and validate inter organizational requirements. We demonstrate the capabilities of CoSeRMaS to establish and validate the legal compliance that is demanded by the German Bundes Datenschutzgesetz (BDSG) when two or more customers and providers exchange data as part of their service composition.
- Vollständige Referenz
- BibTeX
Sillaber, C. & Breu, R.,
(2012).
Managing legal compliance through security requirements across service provider chains: A case study on the German federal data protection act.
In:
Goltz, U., Magnor, M., Appelrath, H.-J., Matthies, H. K., Balke, W.-T. & Wolf, L.
(Hrsg.),
INFORMATIK 2012.
Bonn:
Gesellschaft für Informatik e.V..
(S. 1306-1317).
@inproceedings{mci/Sillaber2012,
author = {Sillaber, Christian AND Breu, Ruth},
title = {Managing legal compliance through security requirements across service provider chains: A case study on the German federal data protection act},
booktitle = {INFORMATIK 2012},
year = {2012},
editor = {Goltz, Ursula AND Magnor, Marcus AND Appelrath, Hans-Jürgen AND Matthies, Herbert K. AND Balke, Wolf-Tilo AND Wolf, Lars} ,
pages = { 1306-1317 },
publisher = {Gesellschaft für Informatik e.V.},
address = {Bonn}
}
author = {Sillaber, Christian AND Breu, Ruth},
title = {Managing legal compliance through security requirements across service provider chains: A case study on the German federal data protection act},
booktitle = {INFORMATIK 2012},
year = {2012},
editor = {Goltz, Ursula AND Magnor, Marcus AND Appelrath, Hans-Jürgen AND Matthies, Herbert K. AND Balke, Wolf-Tilo AND Wolf, Lars} ,
pages = { 1306-1317 },
publisher = {Gesellschaft für Informatik e.V.},
address = {Bonn}
}
Haben Sie fehlerhafte Angaben entdeckt? Sagen Sie uns Bescheid: Feedback abschicken
Mehr Information
ISBN: 978-3-88579-602-2
ISSN: 1617-5468
Datum: 2012
Sprache:
(en)
(en)
Typ: Text/Conference Paper
Sammlungen
- P208 - INFORMATIK 2012 [169]

