{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,7]],"date-time":"2026-05-07T17:46:02Z","timestamp":1778175962790,"version":"3.51.4"},"reference-count":112,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2011,12,31]],"date-time":"2011-12-31T00:00:00Z","timestamp":1325289600000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Inf Syst E-Bus Manage"],"published-print":{"date-parts":[[2013,3]]},"DOI":"10.1007\/s10257-011-0186-0","type":"journal-article","created":{"date-parts":[[2011,12,30]],"date-time":"2011-12-30T11:03:12Z","timestamp":1325242992000},"page":"51-91","source":"Crossref","is-referenced-by-count":11,"title":["Taking value-networks to the cloud services: security services, semantics and service level agreements"],"prefix":"10.1007","volume":"11","author":[{"given":"Haluk","family":"Demirkan","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Michael","family":"Goul","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2011,12,31]]},"reference":[{"key":"186_CR1","doi-asserted-by":"crossref","first-page":"475","DOI":"10.2307\/1886045","volume":"90","author":"WJ Adams","year":"1976","unstructured":"Adams WJ, Yellen JL (1976) Commodity bundling and the burden of monopoly. Q J Econ 90:475\u2013498","journal-title":"Q J Econ"},{"issue":"4","key":"186_CR2","doi-asserted-by":"crossref","first-page":"57","DOI":"10.1109\/MIS.2004.35","volume":"19","author":"H Akkermans","year":"2004","unstructured":"Akkermans H, Baida Z, Gordijn J, Pena N, Altuna A, Laresgoiti I (2004) Value webs: using ontologies to bundle real-world services. IEEE Intell Syst 19(4):57\u201366","journal-title":"IEEE Intell Syst"},{"key":"186_CR3","unstructured":"Alturi V, Warner J (2005) Supporting conditional delegation in secure workflow management systems. Proceedings of the symposium on access control models and technologies (SACMAT\u201905), June, pp 49\u201358"},{"key":"186_CR4","unstructured":"Anderson J (1972) Computer security technology planning study. US air force electronic systems division tech. Report, (Oct), pp 73\u2013151"},{"key":"186_CR5","unstructured":"Anderson R (2001) Why information security is hard\u2014An economic perspective. Proceedings of 17th annual computer security applications conference (ACSAC), New Orleans, La. 10\u201314 Dec"},{"key":"186_CR6","unstructured":"AT&T (2004) Network security: managing the risk and opportunity. AT&T point of view, July 1\u201321"},{"key":"186_CR7","unstructured":"Audin G (2004) A roadmap to convergence. A supplement to business communications review\u2014transforming telephony. Oct 9\u201312"},{"issue":"3","key":"186_CR8","doi-asserted-by":"crossref","first-page":"186","DOI":"10.1145\/357830.357849","volume":"3","author":"S Axelsson","year":"2000","unstructured":"Axelsson S (2000) The base-rate fallacy and the difficulty of intrusion detection. ACM Trans Inf Syst Secur 3(3):186\u2013205","journal-title":"ACM Trans Inf Syst Secur"},{"key":"186_CR9","unstructured":"Babaie E, Hale K, Souza RD, Adachi Y, Ng F (2006) Forecast: IT services, worldwide, 2003\u20132010, Gartner Forecast, Gartner Group, Stamford, CT, Nov 30"},{"issue":"12","key":"186_CR10","doi-asserted-by":"crossref","first-page":"1613","DOI":"10.1287\/mnsc.45.12.1613","volume":"45","author":"Y Bakos","year":"1999","unstructured":"Bakos Y, Brynjolfsson E (1999) Bundling information goods: pricing, profits, and efficiency. Manag Sci 45(12):1613\u20131630","journal-title":"Manag Sci"},{"issue":"4","key":"186_CR11","doi-asserted-by":"crossref","first-page":"13","DOI":"10.2753\/MIS0742-1222260402","volume":"26","author":"I Bardhan","year":"2010","unstructured":"Bardhan I, Demirkan H, Kannan PK, Kauffman RJ, Sougstad R (2010) An interdisciplinary perspective on IT services management and services science. J Manag Inf Syst 26(4):13\u201365","journal-title":"J Manag Inf Syst"},{"issue":"1","key":"186_CR12","doi-asserted-by":"crossref","first-page":"39","DOI":"10.1145\/1125808.1125810","volume":"15","author":"D Basin","year":"2006","unstructured":"Basin D, Doser J, Zurich E (2006) Model driven security: from UML models to access control infrastructures. ACM Trans Softw Eng Methodol 15(1):39\u201391","journal-title":"ACM Trans Softw Eng Methodol"},{"key":"186_CR13","unstructured":"Bell D (2005) Looking back at the Bell-La Padula model. Proceedings of 21st annual computer security applications conference, December"},{"key":"186_CR14","volume-title":"The economics of EC competition law","author":"S Bishop","year":"1999","unstructured":"Bishop S, Walker M (1999) The economics of EC competition law. Sweet and Maxwell, London"},{"key":"186_CR15","unstructured":"Blakley B (2010) Federated identity. Gartner report, 9 Dec 2010 ID:G00206782"},{"issue":"2","key":"186_CR16","doi-asserted-by":"crossref","first-page":"79","DOI":"10.1145\/1042091.1042094","volume":"48","author":"LD Bodin","year":"2005","unstructured":"Bodin LD, Gordon LA, Loeb MP (2005) Evaluating information security investments using the analytic hierarchy process. Commun ACM 48(2):79\u201383","journal-title":"Commun ACM"},{"key":"186_CR17","unstructured":"Boeing (2006) http:\/\/www.boeing.com\/commercial\/787family\/dev_team.html"},{"key":"186_CR18","unstructured":"Borda A, Careless J, Dimitrova M, Fraser M, Frey J, Hubbard P, Goldstein S, Pung C, Shoebridge M, Wiseman N, Arenas A (2006) Report of working group on virtual research communities for the OST e-infrastructure steering group. VCR Final Report, March 31, 2006"},{"issue":"4","key":"186_CR19","first-page":"344","volume":"8","author":"G Brown","year":"2004","unstructured":"Brown G, Carpenter R (2004) Successful application of SOA across the enterprise and beyond. Intel Technol J 8(4):344\u2013359","journal-title":"Intel Technol J"},{"issue":"4","key":"186_CR20","doi-asserted-by":"crossref","first-page":"322","DOI":"10.1016\/S0167-4048(99)80078-9","volume":"18","author":"K Buzzard","year":"1999","unstructured":"Buzzard K (1999) Computer security\u2014what should you spend your money on. Comput Secur 18(4):322\u2013334","journal-title":"Comput Secur"},{"issue":"5","key":"186_CR21","first-page":"41","volume":"81","author":"NG Carr","year":"2003","unstructured":"Carr NG (2003) IT doesn\u2019t matter. Harvard Bus Rev 81(5):41\u201349","journal-title":"Harvard Bus Rev"},{"key":"186_CR22","doi-asserted-by":"crossref","unstructured":"Cavusoglu H, Mishra B, Raghunathan S (2004) A model for evaluating IT security investments. Commun ACM 47:87\u201392","DOI":"10.1145\/1005817.1005828"},{"issue":"1","key":"186_CR23","doi-asserted-by":"crossref","first-page":"28","DOI":"10.1287\/isre.1050.0041","volume":"16","author":"H Cavusoglu","year":"2005","unstructured":"Cavusoglu H, Mishra B, Raghunathan S (2005) The value of intrusion detection systems in information technology security architecture. Inf Syst Res 16(1):28\u201346","journal-title":"Inf Syst Res"},{"key":"186_CR24","volume-title":"Building internet firewalls","author":"DB Chapman","year":"1995","unstructured":"Chapman DB, Zwicky ED (1995) Building internet firewalls. O\u2019Reilly and Associates Inc, USA"},{"key":"186_CR25","unstructured":"Cheswick WR, Bellovin SM (1994) Firewalls and internet security: repelling the Wily Hacker, Addison-Wesley, Reading"},{"key":"186_CR26","doi-asserted-by":"crossref","unstructured":"Cohen E, Thomas RK, Winsborough W, Shands D (2002) Models for coalition-based access control (CBAC). Seventh ACM symposium on access control models and technologies (SACMAT 02), June, Monterey, California, USA","DOI":"10.1145\/507725.507727"},{"key":"186_CR27","unstructured":"Computer World (2006) 2006 IT Agenda. Computer world special report \u201cForecast 200, Computer World Data Points, 2, Jan 2006"},{"key":"186_CR28","first-page":"35","volume":"65","author":"E Cone","year":"2006","unstructured":"Cone E (2006) Flying in formation. Ziff Davis CIO Insight 65:35\u201342","journal-title":"Ziff Davis CIO Insight"},{"key":"186_CR29","doi-asserted-by":"crossref","unstructured":"Covington MJ, Long W, Srinivasan S, Dev SA, Ahamad M, Abowd GD (2001) Securing context-aware applications using environment roles. Proceedings of the sixth ACM symposium on Access control models and technologies, May, Chantilly, Virginia, USA, pp 10\u201320","DOI":"10.1145\/373256.373258"},{"key":"186_CR30","unstructured":"CPDA (Collaborative Product Development Associates) (2004) Integrated process and technology framework. Collaborative Research Services"},{"key":"186_CR31","unstructured":"Currier G (2011) Emerging technology adoption trends. CIO Insight Research"},{"issue":"1","key":"186_CR32","doi-asserted-by":"crossref","first-page":"3","DOI":"10.3233\/JCS-1999-7102","volume":"7","author":"TE Daniels","year":"1999","unstructured":"Daniels TE, Spafford EH (1999) Identification of host audit data to detect attacks on low-level IP. J Comput Secur 7(1):3\u201335","journal-title":"J Comput Secur"},{"issue":"5","key":"186_CR33","doi-asserted-by":"crossref","first-page":"528","DOI":"10.1057\/ejis.2008.42","volume":"17","author":"F D\u2019aubeterre","year":"2008","unstructured":"D\u2019aubeterre F, Singh R, Iyer L (2008) Secure activity resource coordination: empirical evidence of enhanced security awareness in designing secure business processes. Eur J Inf Syst 17(5):528\u2013543","journal-title":"Eur J Inf Syst"},{"key":"186_CR34","unstructured":"Davenport T (2005) The coming commoditization of processes. Harvard Bus Rev 101\u2013108"},{"key":"186_CR35","volume-title":"Research in economic history","author":"G Deltas","year":"1999","unstructured":"Deltas G, Serfes K, Sicotte R (1999) American shipping cartels in the pre-world war I era. In: Clarke GC, Sundstrom WA (eds) Research in economic history. JAI Press, Stamford, Conn"},{"issue":"4","key":"186_CR36","doi-asserted-by":"crossref","first-page":"356","DOI":"10.1016\/j.elerap.2008.07.002","volume":"7","author":"H Demirkan","year":"2009","unstructured":"Demirkan H, Kauffman RJ, Vayghan JA, Fill H-G, Karagiannis D, Maglio PP (2009) Service-oriented technology and management: perspectives on research and practice for the coming decade. Electron Commer Res Appl J 7(4):356\u2013376","journal-title":"Electron Commer Res Appl J"},{"issue":"4","key":"186_CR37","doi-asserted-by":"crossref","first-page":"121","DOI":"10.2753\/MIS0742-1222260405","volume":"26","author":"H Demirkan","year":"2010","unstructured":"Demirkan H, Cheng HK, Bandyopadhyay S (2010) Coordination strategies in a SaaS supply chain. J Manag Inf Syst 26(4):121\u2013146","journal-title":"J Manag Inf Syst"},{"key":"186_CR38","doi-asserted-by":"crossref","unstructured":"Demirkan H, Harmon R, Goul M (2011) Service-oriented web application framework: utility-grade instrumentation of emergent web applications, the special issue of the IEEE IT professional on the future of web applications: strategies and design, pp 15\u201321, Sep\/Oct","DOI":"10.1109\/MITP.2011.74"},{"issue":"2","key":"186_CR39","doi-asserted-by":"crossref","first-page":"222","DOI":"10.1109\/TSE.1987.232894","volume":"13","author":"D Denning","year":"1987","unstructured":"Denning D (1987) An intrusion-detection model. IEEE Trans Softw Eng 13(2):222\u2013226","journal-title":"IEEE Trans Softw Eng"},{"issue":"3","key":"186_CR40","doi-asserted-by":"crossref","first-page":"34","DOI":"10.1145\/227234.227239","volume":"39","author":"D Denning","year":"1996","unstructured":"Denning D, Branstad D (1996) A taxonomy of key escrow encryption systems. Commun ACM 39(3):34\u201340","journal-title":"Commun ACM"},{"issue":"1","key":"186_CR41","doi-asserted-by":"crossref","first-page":"241","DOI":"10.1086\/467349","volume":"39","author":"AR Dick","year":"1996","unstructured":"Dick AR (1996) When are cartels stable contracts? J Law Econ 39(1):241\u2013283","journal-title":"J Law Econ"},{"key":"186_CR42","unstructured":"Drecun V, Brown DH (2004) Closing the process\/technology gap FERA. Collaborative Product Development Associates, LLC"},{"key":"186_CR43","volume-title":"Understanding infrastructure: dynamics, tensions, and design. Report of a NSF workshop on \u201cHistory & theory of infrastructure: lessons for new scientific cyberinfrastructures\u201d","author":"PN Edwards","year":"2007","unstructured":"Edwards PN, Jackson SJ, Bowker GC, Knobel CP (2007) Understanding infrastructure: dynamics, tensions, and design. Report of a NSF workshop on \u201cHistory & theory of infrastructure: lessons for new scientific cyberinfrastructures\u201d. Ann Arbor, Michigan"},{"key":"186_CR44","unstructured":"FERA-based SOA\u2014Semantion Inc. http:\/\/www.ebxmlsoft.com\/papers\/fera-based-soa.html"},{"issue":"4","key":"186_CR45","doi-asserted-by":"crossref","first-page":"374","DOI":"10.1057\/palgrave.ejis.3000687","volume":"16","author":"E Fern\u00e1ndez-Medina","year":"2007","unstructured":"Fern\u00e1ndez-Medina E, Trujillo J, Piattini M (2007) Model-driven multidimensional modeling of secure data warehouses. Eur J Inf Syst 16(4):374\u2013390","journal-title":"Eur J Inf Syst"},{"issue":"1","key":"186_CR46","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/353323.353324","volume":"3","author":"D Frincke","year":"2000","unstructured":"Frincke D (2000) Balancing cooperation and risk in intrusion detection. ACM Trans Inf Syst Secur 3(1):1\u201329","journal-title":"ACM Trans Inf Syst Secur"},{"key":"186_CR47","doi-asserted-by":"crossref","DOI":"10.1145\/373256.373259","volume-title":"Flexible team-based access control using contexts","author":"CK Georgiadis","year":"2001","unstructured":"Georgiadis CK, Mavridis I, Pangalos G, Thomas R (2001) Flexible team-based access control using contexts. Proceedings of ACM symposium on access control model and technology, Chantilly, VA"},{"issue":"9","key":"186_CR48","doi-asserted-by":"crossref","first-page":"70","DOI":"10.1145\/383694.383709","volume":"44","author":"L Gordon","year":"2001","unstructured":"Gordon L, Loeb M (2001) A framework for using information security as a response to competitor analysis systems. Commun ACM 44(9):70\u201375","journal-title":"Commun ACM"},{"issue":"4","key":"186_CR49","doi-asserted-by":"crossref","first-page":"438","DOI":"10.1145\/581271.581274","volume":"5","author":"LA Gordon","year":"2002","unstructured":"Gordon LA, Loeb MP (2002) The economics of information security investment. ACM Trans Inf Syst Secur 5(4):438\u2013457","journal-title":"ACM Trans Inf Syst Secur"},{"issue":"6","key":"186_CR50","doi-asserted-by":"crossref","first-page":"461","DOI":"10.1016\/j.jaccpubpol.2003.09.001","volume":"22","author":"LA Gordon","year":"2003","unstructured":"Gordon LA, Loeb M, Lucyshyn W (2003) Sharing information on computer systems security: an economic analysis. J Acc Public Policy 22(6):461\u2013485","journal-title":"J Acc Public Policy"},{"key":"186_CR51","unstructured":"Graham G, Denning P (1972) Protection\u2014principles and practice. Proceedings of the AFIPS spring joint computer conference, vol. 40, pp 417\u2013429, Atlantic City, New Jersey"},{"issue":"3","key":"186_CR52","doi-asserted-by":"crossref","first-page":"611","DOI":"10.2307\/25148742","volume":"30","author":"S Gregor","year":"2006","unstructured":"Gregor S (2006) The nature of theory in information systems. MIS Q 30(3):611\u2013642","journal-title":"MIS Q"},{"issue":"5","key":"186_CR53","first-page":"312","volume":"8","author":"S Gregor","year":"2007","unstructured":"Gregor S, Jones D (2007) The anatomy of a design theory. J Assoc Inf Syst 8(5):312\u2013335","journal-title":"J Assoc Inf Syst"},{"key":"186_CR54","unstructured":"Huang CD, Hu Q, Behara R (2005a) In search for optimal level of information security investment in risk-averse firms. Proceedings of the third annual security symposium, Tempe, Arizona, Sept 8\u20139"},{"key":"186_CR55","unstructured":"Huang CD, Hu Q, Behara R (2005b) Investment in information security by a riskaverse firm. Proceedings of the 2005 software conference, Las Vegas, Nevada, 10\u201311, Dec"},{"key":"186_CR56","unstructured":"Huang CD, Hu Q, Behara R (2006) Economics of information security investment. Proceedings of the fifth workshop on the economics of information security (WEIS 2006), Robinson College, University of Cambridge, England, 26\u201328, June"},{"key":"186_CR57","doi-asserted-by":"crossref","unstructured":"Hulsebosch RJ, Salden AH, Bargh MS, Ebben PWG, Reitsma J (2005) Context sensitive access control. Proceedings of the tenth ACM symposium on access control models and technologies, Stockholm, Sweden, 01\u201303, June","DOI":"10.1145\/1063979.1064000"},{"key":"186_CR58","doi-asserted-by":"crossref","unstructured":"Jackson SJ, Edwards PN, Bowker GC, Knobel CP (2007) Understanding infrastructure: history, heuristics, and cyberinfrastructure policy. First Monday 12(6). http:\/\/www.crew.umich.edu\/publications\/tr_07_10.html","DOI":"10.5210\/fm.v12i6.1904"},{"key":"186_CR59","volume-title":"The trust problem. Doubleday","author":"JW Jenks","year":"1917","unstructured":"Jenks JW, Clark WE (1917) The trust problem. Doubleday. Page & Company, Garden City, New York"},{"key":"186_CR60","unstructured":"Kai (2009) Press release: IT security spending will increase to match rising cybercrime threat in 2009. The Roer.com Information Security Blog, 12 January. Available at http:\/\/www.roer.com\/node\/446 . Last accessed on March 31, 2009"},{"key":"186_CR61","doi-asserted-by":"crossref","unstructured":"Kang MH, Park JS, Froscher JN (2001) Access control mechanisms for inter-organizational workflows. Proceedings of 6th ACM symposium on access control models and technologies, Chantilly, VA","DOI":"10.1145\/373256.373266"},{"key":"186_CR62","unstructured":"Kavanagh KM, Pescatore J (2007) Magic quadrant for MSSPs, North America, 1H07. Gartner RAS core research note G00149649, 1 Aug"},{"key":"186_CR63","unstructured":"Larsen A (1999) Global security survey: virus attack. InformationWeek.Com, http:\/\/www.informationweek.com\/743\/security.htm"},{"issue":"2","key":"186_CR64","doi-asserted-by":"crossref","first-page":"173","DOI":"10.2307\/249574","volume":"17","author":"KD Loch","year":"1992","unstructured":"Loch KD, Carr HH, Warkentin ME (1992) Threats to information systems: today\u2019s reality, yesterday\u2019s understanding. MIS Q 17(2):173\u2013186","journal-title":"MIS Q"},{"key":"186_CR65","doi-asserted-by":"crossref","unstructured":"Maedche A, Motik B, Silva N, Volz R (2002) MAFRA\u2014A MApping FRamework for distributed ontologies. In: Proceedings of the 13th European conference on knowledge engineering and knowledge management EKAW-2002, Madrid, Spain","DOI":"10.1007\/3-540-45810-7_23"},{"key":"186_CR66","doi-asserted-by":"crossref","unstructured":"Mana A, Montenegro JA, Rudolph C, Vivas JL (2003) A business process-driven approach to security engineering. Proceedings of the 14th international workshop on database and expert system applications (DEXA\u201903)","DOI":"10.1109\/DEXA.2003.1232069"},{"issue":"3","key":"186_CR67","first-page":"179","volume":"26","author":"ML Markus","year":"2002","unstructured":"Markus ML, Majchrzak A, Gasser L (2002) A design theory for systems that support emergent knowledge processes. Mis Q 26(3):179\u2013212","journal-title":"Mis Q"},{"issue":"1","key":"186_CR68","doi-asserted-by":"crossref","first-page":"37","DOI":"10.2307\/2950626","volume":"40","author":"C Matutes","year":"1992","unstructured":"Matutes C, Regibeau P (1992) Compatibility and bundling of complementary goods in a duopoly. J Ind Econ 40(1):37\u201354","journal-title":"J Ind Econ"},{"issue":"3","key":"186_CR69","doi-asserted-by":"crossref","first-page":"334","DOI":"10.1287\/isre.13.3.334.81","volume":"13","author":"DH McKnight","year":"2002","unstructured":"McKnight DH, Choudhury V, Kacmar C (2002) Developing and validating trust measures for e-Commerce: an integrative typology. Inf Syst Res 13(3):334\u2013359","journal-title":"Inf Syst Res"},{"key":"186_CR70","doi-asserted-by":"crossref","unstructured":"Mell P, Grance T (2011) The NIST definition of cloud, recommendations of the national institute of standarts and technology. Available at http:\/\/csrc.nist.gov\/publications\/nistpubs\/800-145\/SP800-145.pdf","DOI":"10.6028\/NIST.SP.800-145"},{"issue":"3","key":"186_CR71","doi-asserted-by":"crossref","first-page":"18","DOI":"10.1109\/MITP.2005.73","volume":"7","author":"HG Miller","year":"2005","unstructured":"Miller HG, Levine HD, Bates SN (2005) Welcome to convergence: surviving the next platform change. IEEE IT Professional 7(3):18\u201325","journal-title":"IEEE IT Professional"},{"key":"186_CR72","unstructured":"Monteiro E (2006) Future research issues and agendas. Information infrastructures and architectures: international research workshop by National e-Science Centre, Edinburgh, 27 Sept"},{"key":"186_CR73","unstructured":"Newhouse S, Schopf J, Richards A, Atkinson M (2007) Sudy of priorities for e-Infrastructure for e-Research. UK e-Science Core Programme Report, 7 Feb"},{"key":"186_CR74","unstructured":"OASIS (2006a) A reference model for service oriented architecture. OASIS SOA reference model technical committee"},{"key":"186_CR75","unstructured":"OASIS (2006b) Electronic business service oriented architecture. http:\/\/www.oasis-open.org\/committees\/tc_home.php?wg_abbrev=ebsoa"},{"issue":"2","key":"186_CR76","doi-asserted-by":"crossref","first-page":"85","DOI":"10.1145\/354876.354878","volume":"3","author":"S Osborn","year":"2000","unstructured":"Osborn S, Sandhu R, Munawer Q (2000) Configuring role-based access control to enforce mandatory and discretionary access control policies. ACM Trans Inf Syst Secur 3(2):85\u2013106","journal-title":"ACM Trans Inf Syst Secur"},{"issue":"3","key":"186_CR77","doi-asserted-by":"crossref","first-page":"421","DOI":"10.1109\/TSMCA.2006.871644","volume":"36","author":"I Park","year":"2006","unstructured":"Park I, Lee J, Raghav Rao H, Upadhyaya SJ (2006) Guest editorial part 2: emerging issues for secure knowledge management\u2014results of a delphi study. IEEE Trans Syst Man Cybern Part A: Syst Humans 36(3):421\u2013428","journal-title":"IEEE Trans Syst Man Cybern Part A: Syst Humans"},{"issue":"3","key":"186_CR78","doi-asserted-by":"crossref","first-page":"45","DOI":"10.2753\/MIS0742-1222240302","volume":"24","author":"K Peffers","year":"2007","unstructured":"Peffers K, Tuunanen T, Rothenberger MA, Chatterjee S (2007) A design science research methodology for information systems research. J Manag Inf Syst 24(3):45\u201377","journal-title":"J Manag Inf Syst"},{"issue":"4","key":"186_CR79","doi-asserted-by":"crossref","first-page":"467","DOI":"10.1016\/S0263-2373(03)00074-4","volume":"21","author":"J Peppard","year":"2003","unstructured":"Peppard J (2003) Managing IT as a portfolio of services. Eur Manag J 21(4):467\u2013483","journal-title":"Eur Manag J"},{"issue":"4","key":"186_CR80","doi-asserted-by":"crossref","first-page":"345","DOI":"10.1016\/S0167-4048(99)80080-7","volume":"18","author":"M Peyravian","year":"1999","unstructured":"Peyravian M, Roginsky A, Zunic N (1999) Hash-based encryption. Comput Secur 18(4):345\u2013350","journal-title":"Comput Secur"},{"key":"186_CR81","unstructured":"Phifer L (2006) Managed security services, 2006 MSSP survey, part 4: managed virtual private networks. ISP Planet, 21 Dec"},{"key":"186_CR82","unstructured":"Pike Research (2011) Cloud computing. http:\/\/www.pikeresearch.com\/research\/cloud-computing-energy-efficiency"},{"key":"186_CR83","unstructured":"Preziosi D (2006) Secure collaboration: working together, without worry. CMP integrated marketing solutions, 23 Oct"},{"key":"186_CR84","unstructured":"Romano L, Kenworthy T (1997) Oklahoma city prosecutor depicts a \u2018twisted\u2019 mcveigh. Washington Post 117(21). http:\/\/tech.mit.edu\/V117\/N21\/mcveigh.21w.html"},{"issue":"2","key":"186_CR85","doi-asserted-by":"crossref","first-page":"38","DOI":"10.1109\/2.485845","volume":"29","author":"RS Sandhu","year":"1996","unstructured":"Sandhu RS, Coyne EJ, Feinstein HL, Youman CE (1996) Role-based access control models. IEEE Comput 29(2):38\u201347","journal-title":"IEEE Comput"},{"issue":"2","key":"186_CR86","doi-asserted-by":"crossref","first-page":"105","DOI":"10.1145\/300830.300839","volume":"1","author":"RS Sandhu","year":"1999","unstructured":"Sandhu RS, Bhamidipati V, Munawer Q (1999) The ARBAC97 model for role-based administration of roles. ACM Trans Inf Syst Secur 1(2):105\u2013135","journal-title":"ACM Trans Inf Syst Secur"},{"key":"186_CR87","doi-asserted-by":"crossref","unstructured":"Siddiqi J, Akhgar B, Naderi M, Orth W, Meyer N, Tuisku M, Pipan G, Gallego ML, Garcia JA, Cecchi M, Colin J (2006) Secure ICT services for mobile and wireless communications: a federated global identity management framework. Proceedings of the third international conference on information technology: New Generations (ITNG\u201906)","DOI":"10.1109\/ITNG.2006.117"},{"issue":"11","key":"186_CR88","doi-asserted-by":"crossref","first-page":"56","DOI":"10.1145\/188280.188298","volume":"37","author":"G Simmons","year":"1994","unstructured":"Simmons G (1994) Cryptanalysis and protocol failures. Commun ACM 37(11):56\u201364","journal-title":"Commun ACM"},{"key":"186_CR89","doi-asserted-by":"crossref","unstructured":"Singh A, Liu L (2003) TrustMe: anonymous management of trust relationships in decentralized P2P systems. Proceedings of third international conference on peer-to-peer computing, 2003. (P2P 2003) vol. 3, pp 142\u2013149, 1 Sept","DOI":"10.1109\/PTP.2003.1231514"},{"issue":"3","key":"186_CR90","first-page":"125","volume":"5","author":"HA Smith","year":"2006","unstructured":"Smith HA, McKeen JD (2006) IT In 2010: the next frontier. MIS Q Executive 5(3):125\u2013136","journal-title":"MIS Q Executive"},{"key":"186_CR91","first-page":"31","volume-title":"Integrating communication, cooperation, and awareness: the diva virtual office environment","author":"M Sohlenkamp","year":"1994","unstructured":"Sohlenkamp M, Chwelos G (1994) Integrating communication, cooperation, and awareness: the diva virtual office environment. Proceedings of AXM conference on computer supported cooperative work, Chapel Hill, NC, pp 31\u2013343"},{"issue":"5","key":"186_CR92","first-page":"469","volume":"9","author":"D Soper","year":"2007","unstructured":"Soper D, Demirkan H, Goul M (2007) A proactive interorganizational knowledge-sharing security model with breach propagation detection and dynamic policy revision. Special Issue Secur Knowl Manag Inf Syst Frontiers 9(5):469\u2013479","journal-title":"Special Issue Secur Knowl Manag Inf Syst Frontiers"},{"key":"186_CR93","doi-asserted-by":"crossref","unstructured":"Sorathia V, Laliwala Z, Chaudhary S (2005) Towards agricultural marketing reforms: web services orchestration approach. Proceedings of 2005 IEEE international conference on services computing (SCC\u201905), vol. 1, pp 260\u2013270","DOI":"10.1109\/SCC.2005.100"},{"key":"186_CR94","doi-asserted-by":"crossref","unstructured":"Stigler GJ (1964) A theory of oligopoly. J Polit Econ 72(1):44\u201361","DOI":"10.1086\/258853"},{"issue":"3","key":"186_CR95","doi-asserted-by":"crossref","first-page":"255","DOI":"10.1287\/isre.1.3.255","volume":"1","author":"DW Straub","year":"1990","unstructured":"Straub DW (1990) Effective IS security: an empirical study. Inf Syst Res 1(3):255\u2013276","journal-title":"Inf Syst Res"},{"issue":"4","key":"186_CR96","doi-asserted-by":"crossref","first-page":"441","DOI":"10.2307\/249551","volume":"23","author":"DW Straub","year":"1998","unstructured":"Straub DW, Welke RJ (1998) Coping with systems risk: aecurity planning models for management decision making. MIS Q 23(4):441\u2013469","journal-title":"MIS Q"},{"key":"186_CR97","doi-asserted-by":"crossref","first-page":"55","DOI":"10.1509\/jmkg.66.1.55.18455","volume":"66","author":"S Stremersch","year":"2002","unstructured":"Stremersch S, Tellis GJ (2002) Strategic bundling of products and prices: a new synthesis for marketing. J Market 66:55\u201372","journal-title":"J Market"},{"key":"186_CR98","doi-asserted-by":"crossref","unstructured":"Sure Y, Erdmann M, Angele J, Staab S, Studer R, Wenke D (2002) Ontoedit: collaborative ontology development for the semantic web. In: Proceedings of the 1st international semantic web conference (ISWC2002), 9\u201312th, June, 2002, Sardinia, Italia, LNCS 2342, pp 221\u2013235. Springer","DOI":"10.1007\/3-540-48005-6_18"},{"key":"186_CR99","unstructured":"Talley T (2006) Experts fear Oklahoma City bombing lessons forgotten. The San Diego Union Tribune, 17 April"},{"key":"186_CR100","doi-asserted-by":"crossref","unstructured":"Thomas RK (1997) Team-based accesses control TMAC): a primitive for applying role-based access controls in collaborative environments. Proceedings of the second ACM workshop on role-based access control, Fairfax, Virginia, 13\u201319 Nov","DOI":"10.1145\/266741.266748"},{"key":"186_CR101","unstructured":"Thomas RK, Sandhu R (1994) Conceptual foundations for a model-based authorizations. In: Proceedings of 7th IEEE computer security foundations workshop. Franconia, NH, pp 66\u201379"},{"key":"186_CR102","doi-asserted-by":"crossref","unstructured":"Thomas RK, Sandhu R (1997) Task-based authorization controls (TBAC): a family of models for active and enterprise-oriented authorization management. In: Proceedings of the IFIP WG 11.3 workshop on database security, pp 166\u2013181, Lake Tahoe, California, August","DOI":"10.1007\/978-0-387-35285-5_10"},{"issue":"1","key":"186_CR103","doi-asserted-by":"crossref","first-page":"29","DOI":"10.1145\/1057977.1057979","volume":"37","author":"W Tolone","year":"2005","unstructured":"Tolone W, Ahn G-J, Pai T, Hong SP (2005) Access control in collaborative systems. CM Comput Survey 37(1):29\u201341","journal-title":"CM Comput Survey"},{"key":"186_CR104","unstructured":"TrustCom (2005) D22 technology roadmap. http:\/\/www.eu trustcom.com\/DownDocumentation.php?tipo=docu&id=246\u2014TrustCom\u2014 http:\/\/www.eu-trustcom.com\/"},{"key":"186_CR105","unstructured":"Ulicki M (2003) Security blanket for the HIPAA Era: outsourcing security services. BioMetriTech featured article by Norlight telecommunications, 17 Sept. http:\/\/www.tmcnet.com\/biomag\/features\/norlight.htm"},{"key":"186_CR106","unstructured":"VCG (2005) The value chain operations reference (VCOR) model, Value Chain Group, Inc., Wexford, PA"},{"key":"186_CR107","unstructured":"VCOR\u2014MODEL\u2014 http:\/\/www.value-chain.org\/index.asp"},{"issue":"1","key":"186_CR108","doi-asserted-by":"crossref","first-page":"37","DOI":"10.3233\/JCS-1999-7103","volume":"7","author":"G Vigna","year":"1999","unstructured":"Vigna G, Kemmerer RA (1999) NetSTAT: a network-based intrusion detection system. J Comput Secur 7(1):37\u201371","journal-title":"J Comput Secur"},{"key":"186_CR109","doi-asserted-by":"crossref","unstructured":"Wang W (1999) Team-and-role-based organizational context and access control for cooperative hypermedia environments. Proceedings of the 10th ACM conference on hypertext and hypermedia (Hypertext\u201999). ACM, New York, pp 37\u201346","DOI":"10.1145\/294469.294480"},{"key":"186_CR110","doi-asserted-by":"crossref","unstructured":"Wang H, Osborn SL (2006) Delegation in the role graph model. Proceedings of SACMAT\u201906, pp 91\u2013100","DOI":"10.1145\/1133058.1133072"},{"key":"186_CR111","doi-asserted-by":"crossref","unstructured":"Wiseman S (1986) A secure capability computer system. Proceedings of the IEEE Symposium on security and privacy, Los Alamitos, CA, pp 86\u201394","DOI":"10.1109\/SP.1986.10007"},{"issue":"3","key":"186_CR112","doi-asserted-by":"crossref","first-page":"350","DOI":"10.2307\/3172886","volume":"30","author":"MS Yadav","year":"1993","unstructured":"Yadav MS, Monroe KB (1993) How buyers perceive savings in a bundle price: an examination of a bundle\u2019s transaction value. J Market Res 30(3):350\u2013358","journal-title":"J Market Res"}],"container-title":["Information Systems and e-Business Management"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10257-011-0186-0.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s10257-011-0186-0\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10257-011-0186-0","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,12,23]],"date-time":"2021-12-23T23:13:37Z","timestamp":1640301217000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s10257-011-0186-0"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011,12,31]]},"references-count":112,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2013,3]]}},"alternative-id":["186"],"URL":"https:\/\/doi.org\/10.1007\/s10257-011-0186-0","relation":{},"ISSN":["1617-9846","1617-9854"],"issn-type":[{"value":"1617-9846","type":"print"},{"value":"1617-9854","type":"electronic"}],"subject":[],"published":{"date-parts":[[2011,12,31]]}}}