Automated Certification for Compliant Cloud-based Business Processes

Automated Certification for Compliant Cloud-based Business Processes
复制标题

基于云的合规业务流程的自动认证

DOI:
--
复制
发表时间:
2011
影响因子:
7.9
通讯作者:
Yoshinori Sato
Yoshinori Sato
中科院分区:
计算机科学3区
文献类型:
--
作者:
R. Accorsi;Lutz Lowis;Yoshinori Sato

文献摘要

被引文献

相似文献

部署大规模、可靠的云计算的一个关键问题是难以证明在云中运行的业务流程的合规性。SAS-70和SAS-117等标准审计程序很难对基于云的流程进行。本文提出了一种新的方法来证明业务流程符合法规要求。该方法将过程模型转换成相应的Petri网表示,并检查他们对要求也表示在这种形式主义。基于Petri网,该方法提供了有充分依据的证据遵守,并在不遵守的情况下,指出可能的漏洞。
A key problem in the deployment of large-scale, reliable cloud computing concerns the difficulty to certify the compliance of business processes operating in the cloud. Standard audit procedures such as SAS-70 and SAS-117 are hard to conduct for cloud-based processes. The paper proposes a novel approach to certify the compliance of business processes with regulatory requirements. The approach translates process models into their corresponding Petri net representations and checks them against requirements also expressed in this formalism. Being based on Petri nets, the approach provides well-founded evidence on adherence and, in case of noncompliance, indicates the possible vulnerabilities.