{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,28]],"date-time":"2025-09-28T20:44:13Z","timestamp":1759092253606,"version":"3.41.0"},"reference-count":37,"publisher":"Association for Computing Machinery (ACM)","issue":"5","license":[{"start":{"date-parts":[[2011,9,30]],"date-time":"2011-09-30T00:00:00Z","timestamp":1317340800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["SIGSOFT Softw. Eng. Notes"],"published-print":{"date-parts":[[2011,9,30]]},"abstract":"<jats:p>Data Warehouse (DW) is a decision information system that facilitates decision makers for the fulfillment of strategic decisions (decision making needs) by extracting and integrating data from heterogeneous sources. Due to sensitivity of the information to be maintained in the DW, it becomes important to capture information security goal as a quality goal of the stakeholders for their organization from early stages of DW life cycle. Various requirements engineering techniques have been proposed in the DW literature without paying much attention on security aspect. Recently, AGDI (agent-goal-decision-information) model was proposed to capture decision making needs of the stakeholders for their organization to build a DW, but security issue was not addressed. In this paper, we propose an extension to the AGDI model to capture security aspect (i.e. security goals of the stakeholders) right from the beginning of requirements modeling in order to prevent illegitimate attempts of accessing DW. The application of the proposed extension in the AGDI model has been demonstrated through a CASE study of a University.<\/jats:p>","DOI":"10.1145\/2020976.2020989","type":"journal-article","created":{"date-parts":[[2011,10,11]],"date-time":"2011-10-11T14:29:02Z","timestamp":1318343342000},"page":"1-4","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":4,"title":["Modeling of security requirements for decision information systems"],"prefix":"10.1145","volume":"36","author":[{"given":"Krishna","family":"Khajaria","sequence":"first","affiliation":[{"name":"Ambedkar Institute of Technology, Guru Gobind Singh Indraprastra University, Delhi, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Manoj","family":"Kumar","sequence":"additional","affiliation":[{"name":"Ambedkar Institute of Technology, Guru Gobind Singh Indraprastra University, Delhi, India"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2011,9,30]]},"reference":[{"key":"e_1_2_1_1_1","unstructured":"Inmon W.H. 1996. Building the data warehouse. Wiley New York.   Inmon W.H. 1996. Building the data warehouse. Wiley New York."},{"key":"e_1_2_1_2_1","unstructured":"Ballard C. Herreman D. Schau D. Bell R. Kim E. and Valencic A. 1998. Data modeling techniques for data warehousing http:\/\/redbooks.ibm.com.   Ballard C. Herreman D. Schau D. Bell R. Kim E. and Valencic A. 1998. Data modeling techniques for data warehousing http:\/\/redbooks.ibm.com."},{"volume-title":"Proceedings of 10th CAiSE'98 Conference, ed. Pernici B, Thanos C","author":"Jarke M.","key":"e_1_2_1_3_1"},{"key":"e_1_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.5555\/827255.827807"},{"volume-title":"Workshop on System Requirements: Analysis, Management, and Exploitation.","year":"1994","author":"Yu E.","key":"e_1_2_1_5_1"},{"key":"e_1_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1023\/B:AGNT.0000018806.20944.ef"},{"volume-title":"Proceedings of Third Workshop on Requirements Engineering, Barcelona, Catalonia.","year":"1997","author":"Yu E.S.K.","key":"e_1_2_1_7_1"},{"key":"e_1_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.dss.2006.12.001"},{"volume-title":"Short Paper Proceedings, 13--17","author":"Prakash N.","key":"e_1_2_1_9_1"},{"key":"e_1_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1007\/s00766-007-0057-x"},{"key":"e_1_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/1598732.1598737"},{"key":"e_1_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1504\/IJBIDM.2007.016379"},{"key":"e_1_2_1_13_1","first-page":"363","article-title":"On Non-Functional Requirements in Software Engineering","volume":"5600","author":"Chung L.","year":"2007","journal-title":"LNCS"},{"key":"e_1_2_1_14_1","first-page":"286","article-title":"Achieving, Satisficing and Excelling, ER Workshops","volume":"4802","author":"Jureta I.J.","year":"2007","journal-title":"LNCS"},{"issue":"1","key":"e_1_2_1_15_1","first-page":"13","article-title":"In Int","volume":"1","author":"Landwehr C.E.","year":"2001","journal-title":"Journal of Information Security"},{"key":"e_1_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1109\/ARES.2008.86"},{"key":"e_1_2_1_17_1","unstructured":"Weise J. and Martin C.R. 2001. Developing a security policy Sun Microsystems http:\/\/www.sun.com\/blueprints.  Weise J. and Martin C.R. 2001. Developing a security policy Sun Microsystems http:\/\/www.sun.com\/blueprints."},{"key":"e_1_2_1_18_1","unstructured":"A guide to understanding Security Modeling in Trusted Systems by National Computer Security Center 1992.  A guide to understanding Security Modeling in Trusted Systems by National Computer Security Center 1992."},{"key":"e_1_2_1_19_1","unstructured":"Weippl E.R. Security in Data Warehouses.  Weippl E.R. Security in Data Warehouses."},{"key":"e_1_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/NCM.2009.226"},{"key":"e_1_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/336512.336559"},{"key":"e_1_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/294260.294261"},{"key":"e_1_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1017\/S026988890000789X"},{"key":"e_1_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1016\/S0950-5849(03)00097-1"},{"key":"e_1_2_1_25_1","unstructured":"BS799-1:1999 Information Security Management-Part-1: Code of Practice for Information Security British Standards Institution London.  BS799-1:1999 Information Security Management-Part-1: Code of Practice for Information Security British Standards Institution London."},{"key":"e_1_2_1_26_1","unstructured":"Olson I. and Abrams M.: Information Security Policy.  Olson I. and Abrams M.: Information Security Policy."},{"key":"e_1_2_1_27_1","doi-asserted-by":"crossref","unstructured":"Jarke M. Lenzirini M. Vassiliou Y. and Vassiliadis P. 1999. Fundamentals of Data Warehouse Springer-Verlag.   Jarke M. Lenzirini M. Vassiliou Y. and Vassiliadis P. 1999. Fundamentals of Data Warehouse Springer-Verlag.","DOI":"10.1007\/978-3-662-04138-3"},{"key":"e_1_2_1_28_1","unstructured":"Kazmierczak E.: ww2.cs.mu.oz.au\/~dmwilm\/downloads\/641.pdf  Kazmierczak E.: ww2.cs.mu.oz.au\/~dmwilm\/downloads\/641.pdf"},{"volume-title":"2nd International Workshop on Design and Management of Data Warehouse, Swedan.","author":"Rosenthal A.","key":"e_1_2_1_29_1"},{"volume-title":"Proc. of 2nd Int. Workshop on Design and Management of Data Warehouses. CEUR-WS.org.","author":"Moody D.L.","key":"e_1_2_1_30_1"},{"key":"e_1_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/384189.384190"},{"volume-title":"Proc. IEEE Symp. on Security and Privacy, 161--178","author":"Jajodia D.","key":"e_1_2_1_32_1"},{"volume-title":"Proc. ER, 311--324","author":"Priebe G.","key":"e_1_2_1_33_1"},{"key":"e_1_2_1_34_1","first-page":"265","article-title":"Extending UML for Multidimensional Modeling","volume":"2460","author":"Mora S.R.","year":"2002","journal-title":"LNCS"},{"key":"e_1_2_1_35_1","first-page":"217","article-title":"Extending UML for Designing secure Data Warehouses","volume":"3288","author":"Medina E.F.","year":"2004","journal-title":"ER LNCS"},{"key":"e_1_2_1_36_1","unstructured":"E. Fernandez-Medina J. Trujillo R. Villaroel and M. Piattini. 2006. Extending UML for designing secure data warehouses. In Decision Support Systems.  E. Fernandez-Medina J. Trujillo R. Villaroel and M. Piattini. 2006. Extending UML for designing secure data warehouses. In Decision Support Systems."},{"key":"e_1_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-88873-4_9"}],"container-title":["ACM SIGSOFT Software Engineering Notes"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2020976.2020989","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2020976.2020989","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T09:54:22Z","timestamp":1750240462000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2020976.2020989"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011,9,30]]},"references-count":37,"journal-issue":{"issue":"5","published-print":{"date-parts":[[2011,9,30]]}},"alternative-id":["10.1145\/2020976.2020989"],"URL":"https:\/\/doi.org\/10.1145\/2020976.2020989","relation":{},"ISSN":["0163-5948"],"issn-type":[{"type":"print","value":"0163-5948"}],"subject":[],"published":{"date-parts":[[2011,9,30]]},"assertion":[{"value":"2011-09-30","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}