Enhancing the ArchiMate® standard with a responsibility modeling language for access rights management

  • Authors:
  • Christophe Feltus;Eric Dubois;Erik Proper;Iver Band;Michaël Petit

  • Affiliations:
  • Public Research Centre Henri Tudor, Luxembourg;Public Research Centre Henri Tudor, Luxembourg;Public Research Centre Henri Tudor, Luxembourg;Standard Insurance Company, Portland, Oregon;University of Namur, Belgium

  • Venue:
  • Proceedings of the Fifth International Conference on Security of Information and Networks
  • Year:
  • 2012

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this paper, we describe an innovative approach for aligning the business layer and the application layer of ArchiMate to ensure that applications manage access rights consistently with enterprise goals and risk tolerances. The alignment is realized by using the responsibility of the employees, which we model using ReMoLa. The main focus of the alignment targets the definition and the assignment of the access rights needed by the employees according to business specification. The approach is illustrated and validated with a case study in a municipal hospital in Luxembourg.