Using dependent CORAS diagrams to analyse mutual dependency

  • Authors:
  • Gyrd Brændeland;Heidi E. I. Dahl;Iselin Engan;Ketil Stølen

  • Affiliations:
  • SINTEF ICT, Oslo, Norway;SINTEF ICT, Oslo, Norway;SINTEF ICT, Oslo, Norway;SINTEF ICT, Oslo, Norway

  • Venue:
  • CRITIS'07 Proceedings of the Second international conference on Critical Information Infrastructures Security
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

The CORAS method for security risk analysis provides a customized language, the CORAS diagrams, for threat and risk modelling. In this paper, we extend this language to capture context dependencies, and use it as a means to analyse mutual dependency. We refer to the extension as dependent CORAS diagrams. We define a textual syntax using EBNF and explain how a dependent CORAS diagram may be schematically translated via the textual syntax into a paragraph in English, characterizing its intended meaning. Then we demonstrate the suitability of the language by means of a core example.