{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:28:55Z","timestamp":1750307335258,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":31,"publisher":"ACM","license":[{"start":{"date-parts":[[2011,6,15]],"date-time":"2011-06-15T00:00:00Z","timestamp":1308096000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2011,6,15]]},"DOI":"10.1145\/1998441.1998461","type":"proceedings-article","created":{"date-parts":[[2011,6,21]],"date-time":"2011-06-21T13:47:14Z","timestamp":1308664034000},"page":"133-142","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":16,"title":["An approach to modular and testable security models of real-world health-care applications"],"prefix":"10.1145","author":[{"given":"Achim D.","family":"Brucker","sequence":"first","affiliation":[{"name":"SAP Research, Karlsruhe, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lukas","family":"Br\u00fcgger","sequence":"additional","affiliation":[{"name":"ETH Zurich, Zurich, Switzerland"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Paul","family":"Kearney","sequence":"additional","affiliation":[{"name":"BT Innovate &amp; Design, Ipswich, United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Burkhart","family":"Wolff","sequence":"additional","affiliation":[{"name":"Universit\u00e9 Paris-Sud, Paris, France"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2011,6,15]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"American National Standard for Information Technology -- Role Based Access Control. INCITS 359--2004.  American National Standard for Information Technology -- Role Based Access Control. INCITS 359--2004."},{"key":"e_1_3_2_1_2_1","volume-title":"Database State","author":"Anderson R.","year":"2009","unstructured":"R. Anderson . Database State . Joseph Rowntree Reform Trust Ltd , 2009 . ISBN 9780954890247 (pbk.). R. Anderson. Database State. Joseph Rowntree Reform Trust Ltd, 2009. ISBN 9780954890247 (pbk.)."},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2010.07.001"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/1542207.1542238"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.ijmedinf.2006.09.008"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.5555\/1009380.1009672"},{"key":"e_1_3_2_1_8_1","first-page":"229","volume-title":"Secure computer systems: A mathematical model","author":"Bell D. E.","year":"1996","unstructured":"D. E. Bell and L. J. LaPadula . Secure computer systems: A mathematical model , volume II . In Journal of Computer Security 4, pages 229 -- 263 , 1996 . D. E. Bell and L. J. LaPadula. Secure computer systems: A mathematical model, volume II. In Journal of Computer Security 4, pages 229--263, 1996."},{"key":"e_1_3_2_1_9_1","volume-title":"The NHS IT project: the biggest computer programme in the world - ever! Radcliffe Publishing","author":"Brennan S.","year":"2005","unstructured":"S. Brennan . The NHS IT project: the biggest computer programme in the world - ever! Radcliffe Publishing , 2005 . S. Brennan. The NHS IT project: the biggest computer programme in the world - ever! Radcliffe Publishing, 2005."},{"key":"e_1_3_2_1_10_1","volume-title":"June 25th","author":"Browne A.","year":"2000","unstructured":"A. Browne . Lives ruined as NHS leaks patients' notes. The Observer , June 25th , 2000 . A. Browne. Lives ruined as NHS leaks patients' notes. The Observer, June 25th, 2000."},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-31848-4_2"},{"key":"e_1_3_2_1_12_1","first-page":"149","volume-title":"Test-sequence generation with TestGen -- with an application to firewall testing","author":"Brucker A. D.","year":"2007","unstructured":"A. D. Brucker and B. Wolff . Test-sequence generation with TestGen -- with an application to firewall testing . In B. Meyer and Y. Gurevich, editors, TAP, number 4454 in LNCS, pages 149 -- 168 . Springer , 2007 . A. D. Brucker and B. Wolff. Test-sequence generation with TestGen -- with an application to firewall testing. In B. Meyer and Y. Gurevich, editors, TAP, number 4454 in LNCS, pages 149--168. Springer, 2007."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICST.2010.50"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.2307\/2266170"},{"key":"e_1_3_2_1_16_1","volume-title":"Code of Practice","author":"Department of Health. Confidentiality.","year":"2003","unstructured":"Department of Health. Confidentiality. Code of Practice , 2003 . Department of Health. Confidentiality. Code of Practice, 2003."},{"key":"e_1_3_2_1_17_1","volume-title":"Our Guarantee for NHS Care Records in England","author":"Department of Health.","year":"2009","unstructured":"Department of Health. The Care Record Guarantee . Our Guarantee for NHS Care Records in England , 2009 . Department of Health. The Care Record Guarantee. Our Guarantee for NHS Care Records in England, 2009."},{"key":"e_1_3_2_1_18_1","volume-title":"Information Governance (IG) Concepts","author":"Department of Health.","year":"2010","unstructured":"Department of Health. Information Governance (IG) Concepts , 2010 . http:\/\/www.connectingforhealth.nhs.uk\/systemsandservices\/infogov. Department of Health. Information Governance (IG) Concepts, 2010. http:\/\/www.connectingforhealth.nhs.uk\/systemsandservices\/infogov."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1049\/ip-sen:20045038"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/1377836.1377867"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1109\/COMPSAC.2007.96"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1109\/EUC.2008.22"},{"key":"e_1_3_2_1_23_1","first-page":"120","volume-title":"POLICY","author":"Kalam A. A. E.","year":"2003","unstructured":"A. A. E. Kalam , S. Benferhat , A. Mi\u00e8ge , R. E. Baida , F. Cuppens , C. Saurel , P. Balbiani , Y. Deswarte , and G. Trouessin . Organization based access control . In POLICY , pages 120 -- 131 . IEEE Computer Society , 2003 . A. A. E. Kalam, S. Benferhat, A. Mi\u00e8ge, R. E. Baida, F. Cuppens, C. Saurel, P. Balbiani, Y. Deswarte, and G. Trouessin. Organization based access control. In POLICY, pages 120--131. IEEE Computer Society, 2003."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/344287.344304"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1109\/SESS.2007.5"},{"key":"e_1_3_2_1_26_1","series-title":"phLNCS","volume-title":"Isabelle\/HOL--A Proof Assistant for Higher-Order Logic","author":"Nipkow T.","year":"2002","unstructured":"T. Nipkow , L. C. Paulson , and M. Wenzel . Isabelle\/HOL--A Proof Assistant for Higher-Order Logic , volume 2283 of phLNCS . Springer , 2002 . T. Nipkow, L. C. Paulson, and M. Wenzel. Isabelle\/HOL--A Proof Assistant for Higher-Order Logic, volume 2283 of phLNCS. Springer, 2002."},{"key":"e_1_3_2_1_27_1","volume-title":"extensible access control markup language (XACML), version 2.0","author":"OASIS.","year":"2005","unstructured":"OASIS. extensible access control markup language (XACML), version 2.0 , 2005 . OASIS. extensible access control markup language (XACML), version 2.0, 2005."},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/158511.158524"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICST.2008.44"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/300830.300839"},{"key":"e_1_3_2_1_31_1","volume-title":"The Z Notation: A Reference Manual","author":"Spivey J. M.","year":"1992","unstructured":"J. M. Spivey . The Z Notation: A Reference Manual . Prentice Hall, Inc. , 2nd edition, 1992 . J. M. Spivey. The Z Notation: A Reference Manual. Prentice Hall, Inc., 2nd edition, 1992."},{"key":"e_1_3_2_1_32_1","author":"The Caldicott Committee","year":"1997","unstructured":"The Caldicott Committee . Report on the Review of Patient-Identifiable Information , 1997 . The Caldicott Committee. Report on the Review of Patient-Identifiable Information, 1997.","journal-title":"Report on the Review of Patient-Identifiable Information"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.5555\/1337691.1338375"}],"event":{"name":"SACMAT '11: 16th ACM Symposium on Access Control Models and Technologies","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"],"location":"Innsbruck Austria","acronym":"SACMAT '11"},"container-title":["Proceedings of the 16th ACM symposium on Access control models and technologies"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1998441.1998461","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1998441.1998461","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T11:06:13Z","timestamp":1750244773000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1998441.1998461"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011,6,15]]},"references-count":31,"alternative-id":["10.1145\/1998441.1998461","10.1145\/1998441"],"URL":"https:\/\/doi.org\/10.1145\/1998441.1998461","relation":{},"subject":[],"published":{"date-parts":[[2011,6,15]]},"assertion":[{"value":"2011-06-15","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}