{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,24]],"date-time":"2025-11-24T09:56:21Z","timestamp":1763978181735,"version":"3.44.0"},"publisher-location":"Cham","reference-count":20,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030598167"},{"type":"electronic","value":"9783030598174"}],"license":[{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020]]},"DOI":"10.1007\/978-3-030-59817-4_8","type":"book-chapter","created":{"date-parts":[[2020,9,15]],"date-time":"2020-09-15T13:03:17Z","timestamp":1600174997000},"page":"123-138","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["Challenges in IT Security Processes and Solution Approaches with Process Mining"],"prefix":"10.1007","author":[{"given":"Aynesh","family":"Sundararaj","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9507-8713","authenticated-orcid":false,"given":"Silvia","family":"Knittl","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1093-1282","authenticated-orcid":false,"given":"Jens","family":"Grossklags","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2020,9,16]]},"reference":[{"key":"8_CR1","doi-asserted-by":"crossref","unstructured":"van der Aalst, W., de Medeiros, A.: Process mining and security: detecting anomalous process executions and checking process conformance. In: Proceedings of the 2nd International Workshop on Security Issues with Petri Nets and other Computational Models (WISP 2004), pp. 3\u201321 (2005)","DOI":"10.1016\/j.entcs.2004.10.013"},{"key":"8_CR2","doi-asserted-by":"publisher","unstructured":"Accorsi, R., Stocker, T.: On the exploitation of process mining for security audits: the conformance checking case. In: Proceedings of the 27th Annual ACM Symposium on Applied Computing, SAC 2012, pp. 1709\u20131716. ACM, New York (2012). https:\/\/doi.org\/10.1145\/2245276.2232051","DOI":"10.1145\/2245276.2232051"},{"key":"8_CR3","doi-asserted-by":"publisher","unstructured":"Adriansyah, A., van Dongen, B., van der Aalst, W.: Conformance checking using cost-based fitness analysis. In: Proceedings of the IEEE 15th International Enterprise Distributed Object Computing Conference, pp. 55\u201364 (2011). https:\/\/doi.org\/10.1109\/EDOC.2011.12","DOI":"10.1109\/EDOC.2011.12"},{"key":"8_CR4","series-title":"Lecture Notes in Business Information Processing","doi-asserted-by":"publisher","first-page":"75","DOI":"10.1007\/978-3-642-28108-2_7","volume-title":"Business Process Management Workshops","author":"I Ailenei","year":"2012","unstructured":"Ailenei, I., Rozinat, A., Eckert, A., van der Aalst, W.M.P.: Definition and validation of process mining use cases. In: Daniel, F., Barkaoui, K., Dustdar, S. (eds.) BPM 2011. LNBIP, vol. 99, pp. 75\u201386. Springer, Heidelberg (2012). https:\/\/doi.org\/10.1007\/978-3-642-28108-2_7"},{"key":"8_CR5","unstructured":"Celonis SE: Celonis (2020). www.celonis.com. Accessed 07 May 2020"},{"key":"8_CR6","doi-asserted-by":"publisher","unstructured":"Damon, F., Coetzee, M.: Towards a generic identity and access assurance model by component analysis - A conceptual review. In: Proceedings of the First International Conference on Enterprise Systems: ES 2013, pp. 1\u201311, Nov 2013. https:\/\/doi.org\/10.1109\/ES.2013.6690086","DOI":"10.1109\/ES.2013.6690086"},{"key":"8_CR7","doi-asserted-by":"publisher","unstructured":"Dunzer, S., Stierle, M., Matzner, M., Baier, S.: Conformance checking: a state-of-the-art literature review. In: Proceedings of the 11th International Conference on Subject-Oriented Business Process Management. S-BPM ONE 2019. Association for Computing Machinery, New York (2019). https:\/\/doi.org\/10.1145\/3329007.3329014","DOI":"10.1145\/3329007.3329014"},{"key":"8_CR8","first-page":"27","volume":"04","author":"K Haufe","year":"2016","unstructured":"Haufe, K., Colomo-Palacios, R., Dzombeta, S., Brandis, K., Stantchev, V.: A process framework for information security management. Int. J. Inf. Syst. Project Manage. 04, 27\u201347 (2016)","journal-title":"Int. J. Inf. Syst. Project Manage."},{"key":"8_CR9","unstructured":"Hernan, S., Lambert, S., Ostwald, T., Shostack, A.: Threat modeling - uncover security design flaws using the stride approach. MSDN Magazine, November 2009. https:\/\/web.archive.org\/web\/20070303103639\/, http:\/\/msdn.microsoft.com\/msdnmag\/issues\/06\/11\/ThreatModeling\/default.aspx"},{"key":"8_CR10","unstructured":"ISO: ISO\/IEC 27001:2013: Standard, International Organization for Standardization, Geneva, CH, October 2013"},{"key":"8_CR11","doi-asserted-by":"crossref","unstructured":"King, Z., Henshel, D., Flora, L., Cains, M.G., Hoffman, B., Sample, C.: Characterizing and measuring maliciousness for cybersecurity risk assessment. Front. Psychol. (2018), https:\/\/www.ncbi.nlm.nih.gov\/pmc\/articles\/PMC5807417\/","DOI":"10.3389\/fpsyg.2018.00039"},{"key":"8_CR12","doi-asserted-by":"publisher","unstructured":"Li, Y., Li, J.: Study of cloud computing security and application in safe city. Appl. Mech. Mater. 738\u2013739, 299\u2013303 (2015). https:\/\/doi.org\/10.4028\/www.scientific.net\/AMM.738-739.299","DOI":"10.4028\/www.scientific.net\/AMM.738-739.299"},{"key":"8_CR13","unstructured":"Mikolov, T., Chen, K., Corrado, G., Dean, J.: Efficient estimation of word representations in vector space. arXiv preprint arXiv:1301.3781 (2013)"},{"issue":"3","key":"8_CR14","doi-asserted-by":"publisher","first-page":"627","DOI":"10.1007\/s10270-016-0570-9","volume":"16","author":"S Nurcan","year":"2016","unstructured":"Nurcan, S., Schmidt, R.: Theme section of BPMDS 2014: the human perspective in business processes. Softw. Syst. Model. 16(3), 627\u2013629 (2016). https:\/\/doi.org\/10.1007\/s10270-016-0570-9","journal-title":"Softw. Syst. Model."},{"key":"8_CR15","doi-asserted-by":"crossref","unstructured":"Razzaq, A., Hur, A., Ahmad, H.F., Masood, M.: Cyber security: threats, reasons, challenges, methodologies and state of the art solutions for industrial applications. In: IEEE Eleventh International Symposium on Autonomous Decentralized Systems (ISADS), pp. 1\u20136 (2013)","DOI":"10.1109\/ISADS.2013.6513420"},{"key":"8_CR16","doi-asserted-by":"publisher","first-page":"131","DOI":"10.1007\/s10664-008-9102-8","volume":"14","author":"P Runeson","year":"2009","unstructured":"Runeson, P., H\u00f6st, M.: Guidelines for conducting and reporting case study research in software engineering. Empir. Software Eng. 14, 131\u2013164 (2009). https:\/\/doi.org\/10.1007\/s10664-008-9102-8","journal-title":"Empir. Software Eng."},{"issue":"1","key":"8_CR17","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1186\/s40537-019-0277-1","volume":"7","author":"R Sarno","year":"2020","unstructured":"Sarno, R., Sinaga, F., Sungkono, K.R.: Anomaly detection in business processes using process mining and fuzzy association rule learning. J. Big Data 7(1), 1\u201319 (2020). https:\/\/doi.org\/10.1186\/s40537-019-0277-1","journal-title":"J. Big Data"},{"key":"8_CR18","doi-asserted-by":"crossref","unstructured":"Schinagl, S., Shahim, A.: What do we know about information security governance? \u201cFrom the basement to the boardroom\": towards digital security governance. Inf. Comput. Secur. (2020). https:\/\/www.emerald.com\/insight\/content\/doi\/10.1108\/ICS-02-2019-0033\/full\/html","DOI":"10.1108\/ICS-02-2019-0033"},{"key":"8_CR19","unstructured":"Sherwood, J., Clark, A., Lynas, D.: Enterprise Security Architecture: A Business-Driven Approach. CMP Books (2005)"},{"key":"8_CR20","doi-asserted-by":"publisher","unstructured":"Thakur, M.A., Gaikwad, R.: User identity and access management trends in IT infrastructure - an overview. In: International Conference on Pervasive Computing (ICPC), pp. 1\u20134, January 2015. https:\/\/doi.org\/10.1109\/PERVASIVE.2015.7086972","DOI":"10.1109\/PERVASIVE.2015.7086972"}],"container-title":["Lecture Notes in Computer Science","Security and Trust Management"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-59817-4_8","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,14]],"date-time":"2025-09-14T22:03:54Z","timestamp":1757887434000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-030-59817-4_8"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020]]},"ISBN":["9783030598167","9783030598174"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-59817-4_8","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2020]]},"assertion":[{"value":"16 September 2020","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"STM","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Workshop on Security and Trust Management","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Guildford","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"United Kingdom","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2020","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"17 September 2020","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"18 September 2020","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"stm2020","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.iit.cnr.it\/stm2020\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"20","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"8","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"40% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"1,5","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"The conference was held virtually due to the COVID-19 pandemic","order":10,"name":"additional_info_on_review_process","label":"Additional Info on Review Process","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}