A Taxonomy of Information Security for Service-Centric Systems

  • Authors:
  • Pekka Savolainen;Eila Niemela;Reijo Savola

  • Affiliations:
  • VTT Technical Research Centre of Finland;VTT Technical Research Centre of Finland;VTT Technical Research Centre of Finland

  • Venue:
  • EUROMICRO '07 Proceedings of the 33rd EUROMICRO Conference on Software Engineering and Advanced Applications
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

Pervasive communications and the rapid expansion of Internet trigger a myriad of concerns about trust and information security. Moreover, composing software from components and services, originating from diverse sources, without a thorough quality assurance practices may expose serious weaknesses that open up the systems for malicious attacks and misuse. In order to guarantee the security of the systems we need a uniform understanding about what security is and how to measure it. This paper introduces a taxonomy of information security, intended for the use of software architects of servicecentric systems. The security taxonomy extends our quality oriented architecting environment (QoAE)an integrated tool environment for defining quality ontologies, describing the quality properties of service architectures, and analyzing quality requirement satisfaction at the level of proposed architecture.