A UML Extension for the Model-driven Specification of Audit Rules

  • Bernhard Hoisl (Redner*in)

Aktivität: VortragWissenschaftlicher Vortrag (Science-to-Science)

Beschreibung

In recent years, a number of laws and regulations (such as the Basel II accord or SOX) demand that organizations record certain activities or decisions to fulfill legally enforced reporting duties. Most of these regulations have a direct impact on the information systems that support an organization's business processes. Therefore, the definition of audit requirements at the modeling-level is an important prerequisite for the thorough implementation and enforcement of corresponding policies in a software system. In this paper, we present a UML extension for the specification of audit properties. The extension is generic and can be applied to a wide variety of UML elements. In a model-driven development (MDD) approach, our extension can be used to generate corresponding audit rules via model transformations.
Zeitraum25 Juni 201229 Juni 2012
Ereignistitel2nd International Workshop on Information Systems Security Engineering (WISSE) at the 24th International Conference on Advanced Information Systems Engineering (CAiSE)
VeranstaltungstypKeine Angaben
BekanntheitsgradInternational

Österreichische Systematik der Wissenschaftszweige (ÖFOS)

  • 102016 IT-Sicherheit
  • 102
  • 102022 Softwareentwicklung
  • 502050 Wirtschaftsinformatik