{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,21]],"date-time":"2025-11-21T06:04:35Z","timestamp":1763705075770,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":21,"publisher":"ACM","license":[{"start":{"date-parts":[[2015,8,30]],"date-time":"2015-08-30T00:00:00Z","timestamp":1440892800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2015,8,30]]},"DOI":"10.1145\/2786805.2804435","type":"proceedings-article","created":{"date-parts":[[2015,8,26]],"date-time":"2015-08-26T16:48:13Z","timestamp":1440607693000},"page":"1014-1017","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["Towards automating the security compliance value chain"],"prefix":"10.1145","author":[{"given":"Smita","family":"Ghaisas","sequence":"first","affiliation":[{"name":"Tata Consultancy Services, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Manish","family":"Motwani","sequence":"additional","affiliation":[{"name":"Tata Consultancy Services, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Balaji","family":"Balasubramaniam","sequence":"additional","affiliation":[{"name":"Tata Consultancy Services, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Anjali","family":"Gajendragadkar","sequence":"additional","affiliation":[{"name":"Tata Consultancy Services, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rahul","family":"Kelkar","sequence":"additional","affiliation":[{"name":"Tata Consultancy Services, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Harrick","family":"Vin","sequence":"additional","affiliation":[{"name":"Tata Consultancy Services, India"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2015,8,30]]},"reference":[{"key":"e_1_3_2_1_1_1","first-page":"10","volume-title":"Sadiq S., A Study of Compliance Management in Information Systems Research In: The 17th European Conference on Information Systems, Verona, Italy (2009)","author":"Abdullah N. S.","unstructured":"Abdullah N. S. , Indulska M. , Sadiq S., A Study of Compliance Management in Information Systems Research In: The 17th European Conference on Information Systems, Verona, Italy (2009) Verona, Italy , pp. 1\u2013 10 . Abdullah N. S., Indulska M., Sadiq S., A Study of Compliance Management in Information Systems Research In: The 17th European Conference on Information Systems, Verona, Italy (2009) Verona, Italy, pp. 1\u201310."},{"key":"e_1_3_2_1_2_1","first-page":"16","volume-title":"Computer Fraud & Security","author":"Rees J.","unstructured":"Rees J. , The challenges of PCI-DSS compliance , Computer Fraud & Security Volume 2010 , Issue 12, pp. 14\u2013\u2013 16 . Rees J., The challenges of PCI-DSS compliance, Computer Fraud & Security Volume 2010, Issue 12, pp. 14\u2013\u201316."},{"key":"e_1_3_2_1_3_1","volume-title":"IBM Research Report. Zurich Research Laboratory Oct","author":"Giblin C.","year":"2006","unstructured":"Giblin C. , Muller S. , Pfitzmann B. , From regulatory policies to event monitoring rules: towards model driven compliance automation , IBM Research Report. Zurich Research Laboratory Oct \u2019 2006 . Giblin C., Muller S., Pfitzmann B., From regulatory policies to event monitoring rules: towards model driven compliance automation, IBM Research Report. Zurich Research Laboratory Oct\u2019 2006."},{"key":"e_1_3_2_1_4_1","first-page":"32","volume-title":"APCCM","volume":"130","author":"Kharbili M.","year":"2012","unstructured":"Kharbili M. , Business process regulatory compliance management solution frameworks: a comparative evaluation , in: APCCM 2012 . CRPIT, vol. 130 , pp. 23\u2013 32 . Kharbili M., Business process regulatory compliance management solution frameworks: a comparative evaluation, in: APCCM 2012. CRPIT, vol. 130, pp. 23\u201332."},{"key":"e_1_3_2_1_6_1","first-page":"347","volume-title":"proceedings of Central European Conference on Information and Intelligent System, Sept 19-21\u2019","author":"Lovri\u0107 Z.","year":"2012","unstructured":"Lovri\u0107 Z. , Model of simplified implementation of PCI DSS by using ISO 27001 standard , In proceedings of Central European Conference on Information and Intelligent System, Sept 19-21\u2019 2012 , pp. 347 - 351 Vara\u017edin, Croatia. Lovri\u0107 Z., Model of simplified implementation of PCI DSS by using ISO 27001 standard, In proceedings of Central European Conference on Information and Intelligent System, Sept 19-21\u2019 2012, pp. 347-351 Vara\u017edin, Croatia."},{"issue":"1","key":"e_1_3_2_1_7_1","first-page":"886","article-title":"A simple prototype for implementing PCI DSS by using ISO 27001 frameworks","volume":"4","author":"Srivastav A.","year":"2014","unstructured":"Srivastav A. , Ali I. , Kumar N. , Shanker R. , A simple prototype for implementing PCI DSS by using ISO 27001 frameworks , In Intl. Journal of Advanced Research in Computer Science and Software Engg. , Vol 4 , Issue 1 , Jan 2014 , pp 886 - 889 . Srivastav A., Ali I., Kumar N., Shanker R., A simple prototype for implementing PCI DSS by using ISO 27001 frameworks, In Intl. Journal of Advanced Research in Computer Science and Software Engg., Vol 4, Issue 1, Jan 2014, pp 886-889.","journal-title":"Journal of Advanced Research in Computer Science and Software Engg."},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/RELAW.2012.6347798"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/2568225.2568290"},{"key":"e_1_3_2_1_11_1","volume-title":"Intl. Journal of Engineering Sciences Research","volume":"5","author":"Natarajan K.","year":"2014","unstructured":"Natarajan K. , and Ramyachitra D ., Engineering Perspective on Enterprise Software Quality towards Compliance Management for better GRC ., Intl. Journal of Engineering Sciences Research , vol. 5 , article 08375; Oct\u2019 2014 . Natarajan K., and Ramyachitra D., Engineering Perspective on Enterprise Software Quality towards Compliance Management for better GRC., Intl. Journal of Engineering Sciences Research, vol. 5, article 08375; Oct\u2019 2014."},{"key":"e_1_3_2_1_12_1","unstructured":"CIS Tools http:\/\/benchmarks.cisecurity.org\/downloads\/audittools\/ last accessed on March 6 2015  CIS Tools http:\/\/benchmarks.cisecurity.org\/downloads\/audittools\/ last accessed on March 6 2015"},{"key":"e_1_3_2_1_13_1","volume-title":"https:\/\/www.pcisecuritystandards.org\/index.php last accessed on","author":"Payment Card Industry Data","year":"2015","unstructured":"Payment Card Industry Data Security Standard (PCI-DSS) : https:\/\/www.pcisecuritystandards.org\/index.php last accessed on March 6, 2015 . Payment Card Industry Data Security Standard (PCI-DSS): https:\/\/www.pcisecuritystandards.org\/index.php last accessed on March 6, 2015."},{"key":"e_1_3_2_1_14_1","volume-title":"http:\/\/www.cisecurity.org\/ last accessed on","author":"Center for Information Security (CIS)","year":"2015","unstructured":"Center for Information Security (CIS) : http:\/\/www.cisecurity.org\/ last accessed on March 6, 2015 . Center for Information Security (CIS): http:\/\/www.cisecurity.org\/ last accessed on March 6, 2015."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1109\/ASE.2013.6693114"},{"key":"e_1_3_2_1_16_1","unstructured":"OpenNLP Part-of-Speech (POS) Tags: Penn English Treebank http:\/\/blog.dpdearing.com\/2011\/12\/opennlp-partof-speech-pos-tags-penn-english-treebank\/ last accessed on March 6 2015.  OpenNLP Part-of-Speech (POS) Tags: Penn English Treebank http:\/\/blog.dpdearing.com\/2011\/12\/opennlp-partof-speech-pos-tags-penn-english-treebank\/ last accessed on March 6 2015."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-37247-6_37"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-37422-7_11"},{"key":"e_1_3_2_1_19_1","unstructured":"Regulatory Compliance Demystified: An Introduction to Compliance for Developers. http:\/\/msdn.microsoft.com\/enus\/library\/aa480484.aspx. last accessed on March 6 2015  Regulatory Compliance Demystified: An Introduction to Compliance for Developers. http:\/\/msdn.microsoft.com\/enus\/library\/aa480484.aspx. last accessed on March 6 2015"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1017\/CBO9781139173438"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/2514601.2514605"},{"key":"e_1_3_2_1_22_1","volume-title":"http:\/\/www.soxlaw.com\/ last accessed on","author":"The Sarbanes-Oxley Act","year":"2015","unstructured":"The Sarbanes-Oxley Act (SoX) : http:\/\/www.soxlaw.com\/ last accessed on March 6, 2015 . The Sarbanes-Oxley Act (SoX): http:\/\/www.soxlaw.com\/ last accessed on March 6, 2015."},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1109\/RE.2013.6636700"}],"event":{"name":"ESEC\/FSE'15: Joint Meeting of the European Software Engineering Conference and the ACM SIGSOFT Symposium on the Foundations of Software Engineering","sponsor":["SIGSOFT ACM Special Interest Group on Software Engineering"],"location":"Bergamo Italy","acronym":"ESEC\/FSE'15"},"container-title":["Proceedings of the 2015 10th Joint Meeting on Foundations of Software Engineering"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2786805.2804435","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2786805.2804435","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T05:07:26Z","timestamp":1750223246000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2786805.2804435"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015,8,30]]},"references-count":21,"alternative-id":["10.1145\/2786805.2804435","10.1145\/2786805"],"URL":"https:\/\/doi.org\/10.1145\/2786805.2804435","relation":{},"subject":[],"published":{"date-parts":[[2015,8,30]]},"assertion":[{"value":"2015-08-30","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}