loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
14th IEEE International Requirements Engineering Conference (RE'06)
Detecting Conflicts of Interest
Minneapolis/St. Paul, Minnesota, USA
September 11-September 15
ISBN: 0-7695-2555-5
Paolo Giorgini, University of Trento
Fabio Massacci, University of Trento
John Mylopoulos, University of Trento
Nicola Zannone, University of Trento

System vulnerabilities are often caused by the presence of conflicts within the organization where the system-to-be will eventually operate. In particular, conflicts of interest are very harmful since actors can exploit their positions/ roles relative to the system for gaining personal advantage. Capturing and resolving such conflicts is a necessary condition for developing secure information systems.

In this paper, we show how conflicts of interest can be formally detected during requirements analysis. This allows system designers to investigate the causes for which conflicts may occur in an organization. Thereby, they can better understand the organizational structure and so provide appropriate countermeasures to resolve or at least mitigate them.

Citation:
Paolo Giorgini, Fabio Massacci, John Mylopoulos, Nicola Zannone, "Detecting Conflicts of Interest," re, pp.315-318, 14th IEEE International Requirements Engineering Conference (RE'06), 2006
Usage of this product signifies your acceptance of the Terms of Use.