Business Process Model and Notation for Forensic-Ready Software Systems
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F00216224%3A14330%2F22%3A00125901" target="_blank" >RIV/00216224:14330/22:00125901 - isvavai.cz</a>
Result on the web
<a href="http://dx.doi.org/10.5220/0011041000003176" target="_blank" >http://dx.doi.org/10.5220/0011041000003176</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.5220/0011041000003176" target="_blank" >10.5220/0011041000003176</a>
Alternative languages
Result language
angličtina
Original language name
Business Process Model and Notation for Forensic-Ready Software Systems
Original language description
The design and development of secure systems is an important and challenging task. However, such systems should also be prepared for eventual disputes or occurrences of a security incident. To solve this, forensic-ready software systems are, by-design, prepared to assist in the forensic investigation and to provide on-point data with high evidentiary value. However, software engineering support for the systematic development of such software systems is rather sparse. This paper tackles the problem by introducing novel modelling notation, called BPMN for Forensic-Ready Software Systems (BPMN4FRSS), including its syntax and semantics. The notation aims to capture the forensic-ready controls and enable reasoning over them, primarily focusing on potential digital evidence. Importantly, it is made to support forensic readiness oriented risk management decisions. The approach is then demonstrated in a scenario where the controls, which mitigate security and business risks, are properly rep resented.
Czech name
—
Czech description
—
Classification
Type
D - Article in proceedings
CEP classification
—
OECD FORD branch
10200 - Computer and information sciences
Result continuities
Project
<a href="/en/project/EF16_019%2F0000822" target="_blank" >EF16_019/0000822: CyberSecurity, CyberCrime and Critical Information Infrastructures Center of Excellence</a><br>
Continuities
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)<br>S - Specificky vyzkum na vysokych skolach
Others
Publication year
2022
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Article name in the collection
Proceedings of the 17th International Conference on Evaluation of Novel Approaches to Software Engineering
ISBN
9789897585685
ISSN
2184-4895
e-ISSN
—
Number of pages
12
Pages from-to
95-106
Publisher name
SciTePress
Place of publication
Setúbal, Portugal
Event location
Online
Event date
Apr 25, 2022
Type of event by nationality
CST - Celostátní akce
UT code for WoS article
000814765400008