{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,10]],"date-time":"2024-09-10T16:59:55Z","timestamp":1725987595072},"publisher-location":"Cham","reference-count":29,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319981765"},{"type":"electronic","value":"9783319981772"}],"license":[{"start":{"date-parts":[[2008,1,1]],"date-time":"2008-01-01T00:00:00Z","timestamp":1199145600000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2008]]},"DOI":"10.1007\/978-3-540-69534-9_40","type":"book-chapter","created":{"date-parts":[[2008,6,7]],"date-time":"2008-06-07T04:27:34Z","timestamp":1212812854000},"page":"541-555","source":"Crossref","is-referenced-by-count":44,"title":["Adapting Secure Tropos for Security Risk Management in the Early Phases of Information Systems Development"],"prefix":"10.1007","author":[{"given":"Raimundas","family":"Matulevi\u010dius","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nicolas","family":"Mayer","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Haralambos","family":"Mouratidis","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Eric","family":"Dubois","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Patrick","family":"Heymans","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nicolas","family":"Genon","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"40_CR1","unstructured":"Basel Committee on Banking Supervision: International Convergence of Capital Measurement and Capital Standards. Bank for International Settlements (2004)"},{"key":"40_CR2","unstructured":"United States Senate and House of Representatives in Congress: Sarbanes-Oxley Act of 2002. Public Law 107-204 (116 Statute 745) (2002)"},{"key":"40_CR3","unstructured":"Mayer, N., Heymans, P., Matulevi\u010dius, R.: Design of a Modelling Language for Information System Security Risk Management. In: Proceedings of the 1st International Conference on Research Challenges in Information Science (RCIS 2007), pp. 121\u2013131 (2007)"},{"issue":"2","key":"40_CR4","doi-asserted-by":"publisher","first-page":"285","DOI":"10.1142\/S0218194007003240","volume":"17","author":"H. Mouratidis","year":"2007","unstructured":"Mouratidis, H., Giorgini, P.: Secure Tropos: A Security-oriented Extension of the Tropos Methodology. International Journal of Software Engineering and Knowledge Engineering (IJSEKE)\u00a017(2), 285\u2013309 (2007)","journal-title":"International Journal of Software Engineering and Knowledge Engineering (IJSEKE)"},{"key":"40_CR5","unstructured":"DCSSL: EBIOS\u2013Expression of Needs and Identification of Security Objectives (2004)"},{"key":"40_CR6","unstructured":"ENISA: Inventory of Risk Assessment and Risk Management Methods (2004)"},{"key":"40_CR7","unstructured":"ISO: Information Technology\u2013Security Techniques\u2013Information Security Management Systems\u2013Requirements, International Organisation for Standardisation (2005)"},{"key":"40_CR8","unstructured":"Mouratidis, H., Giorgini, P., Manson, G.: Using Tropos Methodology to an Model Integrated Health Assessment System. In: Proceedings of the Fourth International Bi-Conference on Agent-oriented Information Systems (AOIS 2002) (2002)"},{"key":"40_CR9","first-page":"1397","volume-title":"Proceedings of the ARES 2008 Symposium on Requirements Engineering for Information Security (SREIS 2008)","author":"R. Matulevi\u010dius","year":"2008","unstructured":"Matulevi\u010dius, R., Mayer, N., Heymans, P.: Alignment of Misuse Cases with Security Risk Management. In: Proceedings of the ARES 2008 Symposium on Requirements Engineering for Information Security (SREIS 2008), pp. 1397\u20131404. IEEE Computer Society, Los Alamitos (2008)"},{"key":"40_CR10","doi-asserted-by":"publisher","first-page":"55","DOI":"10.1007\/11962977_5","volume-title":"Proceedings of the 1st Interational Workshop on Critical Information Intrastructures Security","author":"Y. Asnar","year":"2006","unstructured":"Asnar, Y., Giorgini, P.: Modelling Risk and Identifying Cuntermeasure in Organizations. In: Proceedings of the 1st Interational Workshop on Critical Information Intrastructures Security, pp. 55\u201366. Springer, Heidelberg (2006)"},{"key":"40_CR11","first-page":"354","volume-title":"Proceedings of the 12th IEEE international Conference on Requirements Engineering (RE 2004)","author":"L. Lin","year":"2004","unstructured":"Lin, L., Nuseibeh, B., Ince, D., Jackson, M.: Using Abuse Frames to Bound the Scope of Security Problems. In: Proceedings of the 12th IEEE international Conference on Requirements Engineering (RE 2004), pp. 354\u2013355. IEEE Computer Society, Los Alamitos (2004)"},{"key":"40_CR12","doi-asserted-by":"crossref","unstructured":"McDermott, J., Fox, C.: Using Abuse Case Models for Security Requirements Analysis. In: Proceedings of the 15th Annual Computer Security Applications Conference (ACSAC 1999), p. 55 (1999)","DOI":"10.1109\/CSAC.1999.816013"},{"issue":"1","key":"40_CR13","doi-asserted-by":"publisher","first-page":"34","DOI":"10.1007\/s00766-004-0194-4","volume":"10","author":"G. Sindre","year":"2005","unstructured":"Sindre, G., Opdahl, A.L.: Eliciting Security Requirements with Misuse Cases. Requirements Engineering Journal\u00a010(1), 34\u201344 (2005)","journal-title":"Requirements Engineering Journal"},{"key":"40_CR14","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"355","DOI":"10.1007\/978-3-540-73031-6_27","volume-title":"Requirements Engineering: Foundation for Software Quality","author":"G. Sindre","year":"2007","unstructured":"Sindre, G.: Mal-activity Diagrams for Capturing Attacks on Business Processes. In: Sawyer, P., Paech, B., Heymans, P. (eds.) REFSQ 2007. LNCS, vol.\u00a04542, pp. 355\u2013366. Springer, Heidelberg (2007)"},{"key":"40_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"426","DOI":"10.1007\/3-540-45800-X_33","volume-title":"\u00abUML\u00bb 2002 - The Unified Modeling Language. Model Engineering, Concepts, and Tools","author":"T. Lodderstedt","year":"2002","unstructured":"Lodderstedt, T., Basin, D.A., Doser, J.: SecureUML: A UML-based Modeling Language for Model-driven Security. In: J\u00e9z\u00e9quel, J.-M., Hussmann, H., Cook, S. (eds.) UML 2002. LNCS, vol.\u00a02460, pp. 426\u2013441. Springer, Heidelberg (2002)"},{"key":"40_CR16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"412","DOI":"10.1007\/3-540-45800-X_32","volume-title":"\u00abUML\u00bb 2002 - The Unified Modeling Language. Model Engineering, Concepts, and Tools","author":"J. Jurjens","year":"2002","unstructured":"Jurjens, J.: UMLsec: Extending UML for Secure Systems Development. In: J\u00e9z\u00e9quel, J.-M., Hussmann, H., Cook, S. (eds.) UML 2002. LNCS, vol.\u00a02460, pp. 412\u2013425. Springer, Heidelberg (2002)"},{"key":"40_CR17","series-title":"Lecture Notes in Computer Science","first-page":"87","volume-title":"Conceptual Modeling - ER 2007","author":"G. Elahi","year":"2007","unstructured":"Elahi, G., Yu, E.: A Goal Oriented Approach for Modeling and Analyzing Security Trade-Offs. In: Parent, C., Schewe, K.-D., Storey, V.C., Thalheim, B. (eds.) ER 2007. LNCS, vol.\u00a04801, pp. 87\u2013101. Springer, Heidelberg (2007)"},{"key":"40_CR18","doi-asserted-by":"publisher","first-page":"148","DOI":"10.1109\/ICSE.2004.1317437","volume-title":"Proceedings of the 26th International Conference on Software Engineering (ICSE 2004)","author":"A. Lamsweerde van","year":"2004","unstructured":"van Lamsweerde, A.: Elaborating Security Requirements by Construction of Intentional Anti-models. In: Proceedings of the 26th International Conference on Software Engineering (ICSE 2004), pp. 148\u2013157. IEEE Computer Society, Los Alamitos (2004)"},{"key":"40_CR19","volume-title":"Proceedings of the 13th IEEE International Conference on Requirements Engineering (RE 2005)","author":"P. Giorgini","year":"2005","unstructured":"Giorgini, P., Massacci, F., Mylopoulos, J., Zannone, N.: Modeling Security Requirements Through Ownership, Permision and Delegation. In: Proceedings of the 13th IEEE International Conference on Requirements Engineering (RE 2005). IEEE Computer Society, Los Alamitos (2005)"},{"key":"40_CR20","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"161","DOI":"10.1007\/11429760_12","volume-title":"Proceedings of the 3nd International Conference on Trust Management","author":"P. Giorgini","year":"2005","unstructured":"Giorgini, P., Massacci, F., Mylopoulos, J., Zannone, N.: Modelling social and individual trust in requirements engineering methodologies. In: Proceedings of the 3nd International Conference on Trust Management. LNCS, pp. 161\u2013176. Springer, Heidelberg (2005)"},{"key":"40_CR21","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"48","DOI":"10.1007\/11767138_5","volume-title":"Advanced Information Systems Engineering","author":"H. Mouratidis","year":"2006","unstructured":"Mouratidis, H., Jurjens, J., Fox, J.: Towards a Comprehensive Framework for Secure Systems Development. In: Dubois, E., Pohl, K. (eds.) CAiSE 2006. LNCS, vol.\u00a04001, pp. 48\u201362. Springer, Heidelberg (2006)"},{"key":"40_CR22","doi-asserted-by":"publisher","first-page":"203","DOI":"10.1023\/B:AGNT.0000018806.20944.ef","volume":"8","author":"P. Bresciani","year":"2004","unstructured":"Bresciani, P., Giorgini, P., Giunchiglia, F., Mylopoulos, J., Perini, A.: TROPOS: an Agent-oriented Software Development Methodology. Journal of Autonomous Agents and Multi-Agent Systems\u00a08, 203\u2013236 (2004)","journal-title":"Journal of Autonomous Agents and Multi-Agent Systems"},{"key":"40_CR23","doi-asserted-by":"publisher","first-page":"365","DOI":"10.1016\/S0306-4379(02)00012-1","volume":"27","author":"J. Castro","year":"2002","unstructured":"Castro, J., Kolp, M., Mylopoulos, J.: Towards Requirements-Driven Information Systems Engineering: The TROPOS Project. Information Systems\u00a027, 365\u2013389 (2002)","journal-title":"Information Systems"},{"issue":"8","key":"40_CR24","doi-asserted-by":"publisher","first-page":"609","DOI":"10.1016\/j.is.2004.06.002","volume":"30","author":"H. Mouratidis","year":"2005","unstructured":"Mouratidis, H., Giorgini, P., Manson, G.A.: When Security Meets Software Engineering: a Case of Modelling Secure Information Systems. Information Systems\u00a030(8), 609\u2013629 (2005)","journal-title":"Information Systems"},{"key":"40_CR25","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"63","DOI":"10.1007\/3-540-45017-3_7","volume-title":"Advanced Information Systems Engineering","author":"H. Mouratidis","year":"2003","unstructured":"Mouratidis, H., Giorgini, P., Manson, G.: Integrating Security and Systems Engineering: Towards the Modelling of Secure Information Systems. In: Eder, J., Missikoff, M. (eds.) CAiSE 2003. LNCS, vol.\u00a02681, pp. 63\u201378. Springer, Heidelberg (2003)"},{"key":"40_CR26","unstructured":"Genon, N.: Modelling Security during Early Requirements: Contributions to and Usage of a Domain Model for Information System Security Risk Management. Master thesis, University of Namur (2007)"},{"issue":"3","key":"40_CR27","doi-asserted-by":"publisher","first-page":"149","DOI":"10.1177\/14604582030093003","volume":"9","author":"H. Mouratidis","year":"2003","unstructured":"Mouratidis, H., Philp, I., Manson, G.: A Novel Agent-Based System to Support the Single Assessment Process of Older People. Journal of Health Informatics\u00a09(3), 149\u2013162 (2003)","journal-title":"Journal of Health Informatics"},{"key":"40_CR28","unstructured":"Mouratidis, H.: A Security Oriented Approach in the Development of Multiagent Systems: Applied to the Management of the Health and Social Care Needs of Older People in England. PhD thesis, Department of Computer Science, University of Sheffield, UK (2004)"},{"issue":"10","key":"40_CR29","doi-asserted-by":"publisher","first-page":"978","DOI":"10.1109\/32.879820","volume":"26","author":"A. Lamsweerde van","year":"2000","unstructured":"van Lamsweerde, A., Letier, E.: Handling Obstacles in Goal-oriented Requirements Engineering. Transactions on Software Engineering\u00a026(10), 978\u20131005 (2000)","journal-title":"Transactions on Software Engineering"}],"container-title":["Notes on Numerical Fluid Mechanics and Multidisciplinary Design","Active Flow and Combustion Control 2018"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-540-69534-9_40","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,1,25]],"date-time":"2019-01-25T01:00:03Z","timestamp":1548378003000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-540-69534-9_40"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2008]]},"ISBN":["9783319981765","9783319981772"],"references-count":29,"URL":"https:\/\/doi.org\/10.1007\/978-3-540-69534-9_40","relation":{},"ISSN":["1612-2909","1860-0824"],"issn-type":[{"type":"print","value":"1612-2909"},{"type":"electronic","value":"1860-0824"}],"subject":[],"published":{"date-parts":[[2008]]}}}