|
|
カイヤ ハルヒコ
Kaiya Haruhiko 海谷 治彦 所属 神奈川大学 情報学部 計算機科学科 神奈川大学大学院 理学研究科 理学専攻(情報科学領域) 職種 教授 |
|
言語種別 | 英語 |
発行・発表の年月 | 2014/07 |
形態種別 | 学術雑誌 |
査読 | 査読あり |
標題 | MASG: Advanced Misuse Case Analysis Model with Assets and Security Goals |
執筆形態 | 共著 |
掲載誌名 | Journal of Information Processing |
出版社・発行元 | JPSJ |
巻・号・頁 | 22(3),pp.536-546 |
担当範囲 | Case Study and Evaluation |
著者・共著者 | Takao Okubo, Kenji Taguchi, Haruhiko Kaiya, and Nobukazu Yoshioka. |
概要 | Misuse case model and its development process are useful and practical for security requirements analysis, but they require expertise especially about security assets and goals. To enable inexperienced requirements analysts to elicit and to analyse security requirements, we present an extension of misuse case model and its development process by incorporating new model elements, assets and security goals. We show its effectiveness from the quantitative and qualitative results of a case study. According to the results, we conclude the extension and its process enable inexperienced analysts to elicit security requirements as well as experienced analysts do. |
DOI | 10.2197/ipsjjip.22.536 |