{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,25]],"date-time":"2025-06-25T13:51:48Z","timestamp":1750859508235,"version":"3.41.0"},"reference-count":71,"publisher":"Association for Computing Machinery (ACM)","issue":"5","license":[{"start":{"date-parts":[[2018,10,9]],"date-time":"2018-10-09T00:00:00Z","timestamp":1539043200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Comput. Surv."],"published-print":{"date-parts":[[2019,9,30]]},"abstract":"<jats:p>Contemporary software systems operate in heterogeneous, dynamic, and distributed environments, where security needs change at runtime. The security solutions for such systems need to be adaptive for the continuous satisfaction of the software systems\u2019 security goals. Whilst the existing research on self-adaptive security has made notable advancement towards designing and engineering self-adaptive security solutions, there exists little work on the taxonomic analysis of the architectures of the reported research and its applicability for open and ultra-large environments. We propose an architecture-centric taxonomy for mapping and comparing the current research and identifying the future research directions in this field. The proposed taxonomy has been used to review the representative work on the architectural characteristics that self-adaptive security systems must maintain for their effective application in large-scale open environments. We reflect on the findings from the taxonomic analysis and discuss the design principles, research challenges and limitations reported in the state of the art and practice. We outline the directions for the future research on architectural level support for self-adaptive security systems for large-scale open environments.<\/jats:p>","DOI":"10.1145\/3234148","type":"journal-article","created":{"date-parts":[[2018,10,10]],"date-time":"2018-10-10T13:30:46Z","timestamp":1539178246000},"page":"1-42","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":13,"title":["A Survey on Self-Adaptive Security for Large-scale Open Environments"],"prefix":"10.1145","volume":"51","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-1933-8960","authenticated-orcid":false,"given":"Giannis","family":"Tziakouris","sequence":"first","affiliation":[{"name":"University of Birmingham, Birmingham, UK"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rami","family":"Bahsoon","sequence":"additional","affiliation":[{"name":"University of Birmingham, Birmingham, UK"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Muhammad Ali","family":"Babar","sequence":"additional","affiliation":[{"name":"University of Adelaide, Adelaide SA, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2018,10,9]]},"reference":[{"key":"e_1_2_3_1_1","doi-asserted-by":"publisher","DOI":"10.5555\/2442691.2442752"},{"key":"e_1_2_3_2_1","doi-asserted-by":"publisher","DOI":"10.1109\/ComputationWorld.2009.26"},{"key":"e_1_2_3_3_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-31072-0_25"},{"key":"e_1_2_3_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2004.2"},{"key":"e_1_2_3_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/1388969.1389029"},{"key":"e_1_2_3_6_1","doi-asserted-by":"publisher","DOI":"10.5555\/1995456.1995624"},{"key":"e_1_2_3_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/DASC.2011.31"},{"key":"e_1_2_3_8_1","doi-asserted-by":"publisher","DOI":"10.1007\/11596141_21"},{"key":"e_1_2_3_9_1","doi-asserted-by":"publisher","DOI":"10.5555\/1260984.1261341"},{"key":"e_1_2_3_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/HPCC.2008.172"},{"key":"e_1_2_3_11_1","doi-asserted-by":"publisher","DOI":"10.5555\/1267549.1267550"},{"volume-title":"Proceedings of the IEEE Systems, Man, and Cybernetics Information Assurance and Security Workshop. 110--116","author":"Carver Curtis","key":"e_1_2_3_12_1","unstructured":"Curtis Carver, John M. D. Hill, John R. Surdu, and Udo W. Pooch. 2000. A methodology for using intelligent agents to provide automated intrusion response. In Proceedings of the IEEE Systems, Man, and Cybernetics Information Assurance and Security Workshop. 110--116."},{"key":"e_1_2_3_13_1","doi-asserted-by":"publisher","DOI":"10.1109\/WCNC.2005.1424845"},{"key":"e_1_2_3_14_1","doi-asserted-by":"publisher","DOI":"10.5555\/1267549.1267554"},{"key":"e_1_2_3_15_1","doi-asserted-by":"publisher","DOI":"10.5555\/647086.715550"},{"key":"e_1_2_3_16_1","volume-title":"Proceedings of the Dagstuhl Seminar. Schloss Dagstuhl-Leibniz-Zentrum for Informatik.","author":"Dressler Falko","year":"2005","unstructured":"Falko Dressler. 2005. Bio-inspired mechanisms for efficient and adaptive network security mechanisms. In Proceedings of the Dagstuhl Seminar. Schloss Dagstuhl-Leibniz-Zentrum for Informatik."},{"key":"e_1_2_3_17_1","doi-asserted-by":"publisher","DOI":"10.5555\/1996039.1996072"},{"key":"e_1_2_3_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/SEAMS.2007.2"},{"key":"e_1_2_3_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/1882291.1882296"},{"key":"e_1_2_3_20_1","doi-asserted-by":"publisher","DOI":"10.1155\/2013\/482949"},{"key":"e_1_2_3_21_1","doi-asserted-by":"publisher","DOI":"10.3390\/computers2010034"},{"key":"e_1_2_3_22_1","doi-asserted-by":"publisher","DOI":"10.4304\/jcp.5.1.23-31"},{"key":"e_1_2_3_23_1","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2005.17"},{"key":"e_1_2_3_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/1165389.945459"},{"key":"e_1_2_3_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/582128.582134"},{"key":"e_1_2_3_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/1082983.1083225"},{"key":"e_1_2_3_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/582128.582135"},{"key":"e_1_2_3_28_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.dss.2006.06.011"},{"key":"e_1_2_3_29_1","doi-asserted-by":"publisher","DOI":"10.1109\/ECBS.2008.22"},{"key":"e_1_2_3_30_1","doi-asserted-by":"publisher","DOI":"10.1109\/TEVC.2002.1011540"},{"key":"e_1_2_3_31_1","first-page":"24","article-title":"Self-adaptive security for mobiles agents","volume":"94","author":"Hassan Razouki","year":"2014","unstructured":"Razouki Hassan and Hair Abdellatif. 2014. Self-adaptive security for mobiles agents. Int. J. Comput. Appl. 94, 13 (2014), 24--29.","journal-title":"Int. J. Comput. Appl."},{"key":"e_1_2_3_32_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.comcom.2007.04.008"},{"key":"e_1_2_3_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/1380584.1380585"},{"key":"e_1_2_3_34_1","doi-asserted-by":"publisher","DOI":"10.5555\/1267359.1267377"},{"key":"e_1_2_3_35_1","doi-asserted-by":"publisher","DOI":"10.5555\/1833006.1833158"},{"key":"e_1_2_3_36_1","doi-asserted-by":"publisher","DOI":"10.1002\/wcm.75"},{"key":"e_1_2_3_37_1","unstructured":"Vadim Kotov. 1997. Systems of systems as communicating structures. Hewlett Packard Laboratories."},{"key":"e_1_2_3_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/MAHSS.2005.1542870"},{"key":"e_1_2_3_39_1","doi-asserted-by":"publisher","DOI":"10.1007\/11949534_109"},{"key":"e_1_2_3_40_1","doi-asserted-by":"publisher","DOI":"10.5555\/1233813.1233816"},{"key":"e_1_2_3_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/1041685.1029905"},{"key":"e_1_2_3_42_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2011.04.012"},{"key":"e_1_2_3_43_1","doi-asserted-by":"publisher","DOI":"10.1007\/11663812_5"},{"key":"e_1_2_3_44_1","doi-asserted-by":"publisher","DOI":"10.1109\/CLOUDCOM-ASIA.2013.94"},{"key":"e_1_2_3_45_1","doi-asserted-by":"publisher","DOI":"10.1109\/NAECON.2011.6183074"},{"key":"e_1_2_3_46_1","doi-asserted-by":"publisher","DOI":"10.1017\/S0269888906000853"},{"key":"e_1_2_3_47_1","volume-title":"Proceedings of the Socially Enhanced Services Computing. Springer Vienna, 117--138","author":"Psaier Harald","year":"2011","unstructured":"Harald Psaier, Lukasz Juszczyk, Florian Skopik, Daniel Schall, and Schahram Dustdar. 2011. Runtime behaviour monitoring and self-adaptation in service-oriented systems. In Proceedings of the Socially Enhanced Services Computing. Springer Vienna, 117--138."},{"key":"e_1_2_3_48_1","doi-asserted-by":"publisher","DOI":"10.1109\/SASOW.2012.18"},{"key":"e_1_2_3_49_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICAC.2006.1662376"},{"key":"e_1_2_3_50_1","volume-title":"Proceedings of the Networking and Media Convergence. 111--117","author":"Safy El","year":"2009","unstructured":"El Safy, Hala Zayed, and El Dessouki. 2009. An adaptive steganographic technique based on integer wavelet transform. In Proceedings of the Networking and Media Convergence. 111--117."},{"key":"e_1_2_3_51_1","doi-asserted-by":"publisher","DOI":"10.1145\/1516533.1516538"},{"key":"e_1_2_3_52_1","doi-asserted-by":"publisher","DOI":"10.1109\/RE.2012.6345794"},{"key":"e_1_2_3_53_1","doi-asserted-by":"publisher","DOI":"10.5555\/1779274.1779286"},{"key":"e_1_2_3_54_1","doi-asserted-by":"publisher","DOI":"10.1109\/IWQOS.1998.675229"},{"key":"e_1_2_3_55_1","doi-asserted-by":"publisher","DOI":"10.1109\/SASO.2007.50"},{"key":"e_1_2_3_56_1","doi-asserted-by":"publisher","DOI":"10.1007\/11596141_20"},{"key":"e_1_2_3_57_1","doi-asserted-by":"publisher","DOI":"10.5555\/1947412.1947423"},{"key":"e_1_2_3_58_1","doi-asserted-by":"publisher","DOI":"10.1145\/2435349.2435401"},{"key":"e_1_2_3_59_1","doi-asserted-by":"crossref","unstructured":"Gianni Tedesco and Uwe Aickelin. 2006. An immune inspired network intrusion detection system utilising correlation context. arXiv preprint arXiv:0910.3124.","DOI":"10.2139\/ssrn.2831328"},{"key":"e_1_2_3_60_1","doi-asserted-by":"publisher","DOI":"10.1007\/11926078_34"},{"key":"e_1_2_3_61_1","doi-asserted-by":"publisher","DOI":"10.1109\/RE.2014.6912262"},{"key":"e_1_2_3_62_1","doi-asserted-by":"publisher","DOI":"10.1109\/HPCC.2014.39"},{"volume-title":"Proceedings of the Performance, Computing, and Communications Conference (IPCCC\u201997)","author":"Ramkumar","key":"e_1_2_3_64_1","unstructured":"Ramkumar M. Venkatesan and Sourav Bhattacharya. 1997. Threat-adaptive security policy. In Proceedings of the Performance, Computing, and Communications Conference (IPCCC\u201997). IEEE. 525--531."},{"key":"e_1_2_3_65_1","doi-asserted-by":"publisher","DOI":"10.2991\/scict-14.2014.34"},{"key":"e_1_2_3_66_1","doi-asserted-by":"publisher","DOI":"10.1007\/s10515-008-0042-8"},{"key":"e_1_2_3_67_1","doi-asserted-by":"publisher","DOI":"10.1109\/RE.2009.36"},{"key":"e_1_2_3_68_1","doi-asserted-by":"publisher","DOI":"10.1109\/CloudCom.2010.16"},{"key":"e_1_2_3_69_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCIT.2007.91"},{"key":"e_1_2_3_70_1","doi-asserted-by":"publisher","DOI":"10.5555\/2666795.2666813"},{"key":"e_1_2_3_71_1","doi-asserted-by":"publisher","DOI":"10.1145\/2555611"},{"key":"e_1_2_3_72_1","volume-title":"Proceedings of the Military Communications Conference (MILCOM\u201902)","volume":"2","author":"Zou Jun","year":"2002","unstructured":"Jun Zou, Kaining Lu, and Zhigang Jin. 2002. Architecture and fuzzy adaptive security algorithm in intelligent firewall. In Proceedings of the Military Communications Conference (MILCOM\u201902). vol. 2. IEEE, 1145--1149."}],"container-title":["ACM Computing Surveys"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3234148","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3234148","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T02:08:03Z","timestamp":1750212483000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3234148"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,10,9]]},"references-count":71,"journal-issue":{"issue":"5","published-print":{"date-parts":[[2019,9,30]]}},"alternative-id":["10.1145\/3234148"],"URL":"https:\/\/doi.org\/10.1145\/3234148","relation":{},"ISSN":["0360-0300","1557-7341"],"issn-type":[{"type":"print","value":"0360-0300"},{"type":"electronic","value":"1557-7341"}],"subject":[],"published":{"date-parts":[[2018,10,9]]},"assertion":[{"value":"2016-10-01","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2018-06-01","order":1,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2018-10-09","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}