Towards the Integration of Human Factors in Collaborative Decision Making for Secure Architecture Design

Towards the Integration of Human Factors in Collaborative Decision Making for Secure Architecture Design
复制标题

在安全架构设计的协作决策中整合人为因素

DOI:
--
复制
发表时间:
2022
期刊:
International Conference on Automated Software Engineering
影响因子:
--
通讯作者:
B. Hamid
B. Hamid
中科院分区:
--
文献类型:
--
作者:
Jason Jaskolka;B. Hamid

文献摘要

参考文献

被引文献

相似文献

设计一个大型而复杂的软件系统不仅取决于系统本身的性质,还取决于参与设计活动的架构师、开发人员和管理人员团队的以人为本的特征。这些团队成员中的每一个通常都具有不同的知识、经验、态度和行为水平(即,人为因素),以确保影响单个团队成员和整个团队的决策过程的系统。因此,这些人为因素会影响架构设计决策,从而影响许多不同的系统质量,包括安全性。在本文中,我们提出了一个框架,考虑人的因素,在协同决策的安全架构设计。在所提出的框架的核心,是安全的人的因素和建筑设计决策的概念模型。我们描述的步骤和我们的初步结果对创建建议的框架,使用模型驱动的工程技术和人类科学的方法相结合。我们还提供了一个简单的设计方案来说明设想的设计工作流程的建议框架。通过所提出的框架,我们的目标是提高我们对不同成员的团队如何做出决策的理解,并为影响系统安全的决策提供更好的可追溯性。
Designing a large and complex software system depends not only on the nature of the system itself, but also on human-centric characteristics of the team of architects, developers, and managers involved in the design activity. Each of these team members often comes with varying levels of knowledge, experience, attitudes, and behaviors (i.e., human factors) towards securing systems that impact the decision-making process of the individual team members and of the team as a whole. Thus, these human factors can influence architectural design decisions impacting many different system qualities including security. In this paper, we propose a framework for considering human factors in collaborative decision-making for secure architecture design. At the core of the proposed framework, are conceptual models for security human factors and architectural design decisions. We describe the steps and our preliminary results towards creating the proposed framework using a combination of model-driven engineering techniques and human science approaches. We also provide a simple design scenario to illustrate the envisioned design workflow of the proposed framework. With the proposed framework, we aim to improve our understanding of how decisions are made by a team of diverse members, and to provide better traceability of decisions impacting system security.
DOI: 10.1016/j.jarmac.2015.09.001
发表时间: 2015-12-01
影响因子: 4.2
作者:
Corbin JC;Reyna VF;Weldon RB;Brainerd CJ
通讯作者: Brainerd CJ