SoD: Collaborative Research: Transparency and Legal Compliance in Software Systems

SoD:协作研究:软件系统的透明度和法律合规性

基本信息

  • 批准号:
    0725144
  • 负责人:
  • 金额:
    $ 27.04万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2007
  • 资助国家:
    美国
  • 起止时间:
    2007-08-01 至 2011-07-31
  • 项目状态:
    已结题

项目摘要

This project, involving collaboration between North Carolina State University and Purdue University, addresses the design of Healthcare information systems. Such systems are becoming ubiquitous and thus increasingly subject to attack, misuse and abuse. Specifications and designs of these systems often neglect security and privacy concerns. Moreover, regulations such as HIPAA (Health Insurance Portability and Accountability Act) as well as security and privacy policies are difficult for users to understand and complex for software engineers to use as guides when designing and implementing systems. This project defines mechanisms that are needed to help analysts disambiguate regulations so that they may be clearly specified as software requirements. In addition, regulations are increasingly requiring organizations to comply with the law and account for their actions. Individuals responsible for ensuring compliance and accountability currently lack sufficient guidance and support to manage their legal obligations within relevant information systems. Software controls are needed to provide assurances that business processes adhere to specific requirements, especially those derived from government regulations.To address these challenges, the proposed work takes a holistic view of the design of transparent and legally compliant software systems. Key research questions that are addressed include: -How should system requirements be specified so they may be realized in design and implementation to ensure legal and regulatory compliance? -Given that software designs need to satisfy multiple stakeholders (organizations, law/policy makers, government agencies, public citizens, etc.) having contradictory, inconsistent and difficult to understand objectives, how can the design process of these systems be improved to lead to convergence and satisfaction of these requirements in a transparent and auditable fashion? This project articulates a requirements management framework that enables executives, business managers, software developers and auditors to distribute legal obligations across business units and/or personnel with different roles and technical capabilities. This framework improves accountability by integrating traceability throughout the policy and requirements lifecycle. The broader impacts of this project are expected to be far reaching as law and regulations govern the collection, use, transfer and removal of information from software systems in many spheres of society.
该项目涉及北卡罗来纳州州立大学和普渡大学之间的合作,涉及医疗保健信息系统的设计。这种系统正变得无处不在,因此越来越容易受到攻击、误用和滥用。这些系统的规格和设计往往忽视安全和隐私问题。此外,诸如HIPAA(健康保险可携性和责任法案)以及安全和隐私政策等法规对于用户来说难以理解,并且对于软件工程师来说在设计和实现系统时用作指南是复杂的。该项目定义了帮助分析师消除法规歧义所需的机制,以便将法规明确指定为软件需求。此外,法规越来越多地要求各组织遵守法律并对其行为负责。负责确保合规和问责的个人目前缺乏足够的指导和支持,无法在相关信息系统内管理其法律的义务。需要软件控制来保证业务流程符合特定要求,特别是来自政府法规的要求。为了应对这些挑战,拟议的工作从整体上考虑了透明和合法的软件系统的设计。解决的关键研究问题包括:-应如何指定系统的要求,使他们可以实现在设计和实施,以确保法律的和法规的遵守?- 鉴于软件设计需要满足多个利益相关者(组织、法律/政策制定者、政府机构、公众公民等)由于这些系统的目标相互矛盾、不一致和难以理解,如何改进这些系统的设计过程,以透明和可审计的方式使这些要求趋于一致并得到满足?该项目阐明了一个需求管理框架,使执行人员、业务经理、软件开发人员和审计人员能够在具有不同角色和技术能力的业务单位和/或人员之间分配法律的义务。该框架通过在整个策略和需求生命周期中集成可追溯性来提高可问责性。由于社会许多领域的软件系统中信息的收集、使用、转移和删除受到法律和条例的制约,预计该项目的广泛影响将是深远的。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Ana Anton其他文献

Self-supporting lamellae: Shape variation methods for the 3D concrete printing of large overhang structures
  • DOI:
    10.1016/j.addma.2024.104329
  • 发表时间:
    2024-07-05
  • 期刊:
  • 影响因子:
  • 作者:
    Shuyi Huang;Weiguo Xu;Ana Anton;Benjamin Dillenburger
  • 通讯作者:
    Benjamin Dillenburger
The evolutionary history of Senna ser. Aphyllae (Leguminosae–Caesalpinioideae), an endemic clade of southern South America
  • DOI:
    10.1007/s00606-017-1450-7
  • 发表时间:
    2017-09-12
  • 期刊:
  • 影响因子:
    1.600
  • 作者:
    Federico O. Robbiati;Ana Anton;Brigitte Marazzi;Marilyn Vásquez-Cruz;Renée H. Fortunato
  • 通讯作者:
    Renée H. Fortunato
Digitally fabricated ribbed concrete floor slabs: a sustainable solution for construction
数字化制造的带肋混凝土楼板:可持续的建筑解决方案
  • DOI:
    10.21809/rilemtechlett.2022.161
  • 发表时间:
    2022
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Jaime Mata‐Falcón;P. Bischof;Tobias Huber;Ana Anton;Joris Burger;F. Ranaudo;Andrei Jipa;Lukas Gebhard;L. Reiter;E. Lloret;T. Van Mele;P. Block;F. Gramazio;M. Kohler;B. Dillenburger;T. Wangler;W. Kaufmann
  • 通讯作者:
    W. Kaufmann
Experimental investigation of reinforcement strategies for concrete extrusion 3D printed beams
混凝土挤压3D打印梁加固策略的实验研究
  • DOI:
    10.3929/ethz-b-000444960
  • 发表时间:
    2020
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Lukas Gebhard;J. M. Falcón;Ana Anton;B. Dillenburger;W. Kaufmann
  • 通讯作者:
    W. Kaufmann

Ana Anton的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Ana Anton', 18)}}的其他基金

SHF: Small: Towards Regulatory Compliance Software Engineering with UCON_LEGAL
SHF:小型:通过 UCON_LEGAL 实现监管合规性软件工程
  • 批准号:
    1359605
  • 财政年份:
    2012
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
SHF: Small: Towards Regulatory Compliance Software Engineering with UCON_LEGAL
SHF:小型:通过 UCON_LEGAL 实现监管合规性软件工程
  • 批准号:
    1217699
  • 财政年份:
    2012
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
Collaborative Research: A Comprehensive Policy-Driven Framework for Online Privacy Protection: Integrating IT, Human, Legal and Economic Perspectives
合作研究:综合政策驱动的在线隐私保护框架:整合 IT、人力、法律和经济视角
  • 批准号:
    0430166
  • 财政年份:
    2004
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Continuing Grant
ITR: Encoding Rights, Permissions and Obligations: Privacy Policy Specification and Compliance
ITR:编码权利、许可和义务:隐私政策规范和合规性
  • 批准号:
    0325269
  • 财政年份:
    2003
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Continuing Grant
CAREER: Towards Estimating Requirements Coverage: Managing Scenarios and Goals in Requirements Evolution
职业:估计需求覆盖范围:管理需求演化中的场景和目标
  • 批准号:
    9983926
  • 财政年份:
    2000
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Continuing Grant

相似海外基金

Collaborative Research: SoD-TEAM: Designing Tests for Evolving Software Systems
协作研究:SoD-TEAM:为不断发展的软件系统设计测试
  • 批准号:
    0725190
  • 财政年份:
    2008
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
Collaborative Research: SoD-TEAM: 'Values at Play: Integrating Ethical and Political Factors into System Design'
合作研究:SoD-TEAM:“发挥价值:将道德和政治因素融入系统设计”
  • 批准号:
    0924088
  • 财政年份:
    2008
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
Collaborative Research: SoD-TEAM: Designing Tests for Evolving Software Systems
协作研究:SoD-TEAM:为不断发展的软件系统设计测试
  • 批准号:
    0725202
  • 财政年份:
    2008
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
SoD: Collaborative Research: Transparency and Legal Compliance in Software Systems
SoD:协作研究:软件系统的透明度和法律合规性
  • 批准号:
    0725152
  • 财政年份:
    2007
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
Collaborative Research: SoD-TEAM: A Feedback-Based Architecture for Highly Reliable Embedded Software
合作研究:SoD-TEAM:基于反馈的高度可靠嵌入式软件架构
  • 批准号:
    0613308
  • 财政年份:
    2006
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
Collaborative Research: SoD-TEAM: A Feedback-Based Architecture for Highly Reliable Embdedded Software
合作研究:SoD-TEAM:基于反馈的高可靠性嵌入式软件架构
  • 批准号:
    0613665
  • 财政年份:
    2006
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
Collaborative Research: SoD-TEAM: Values at Play - Integrating Social Factors into Design
协作研究:SoD-TEAM:发挥价值 - 将社会因素融入设计
  • 批准号:
    0613893
  • 财政年份:
    2006
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
Collaborative Research: SoD-TEAM: "Values at Play: Integrating Ethical and Political Factors into System Design
合作研究:SoD-TEAM:“发挥价值:将伦理和政治因素融入系统设计
  • 批准号:
    0613867
  • 财政年份:
    2006
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
Collaborative Research: SoD-TEAM: A Feedback-Based Architecture for Highly Reliable Embedded Software
合作研究:SoD-TEAM:基于反馈的高度可靠嵌入式软件架构
  • 批准号:
    0650049
  • 财政年份:
    2006
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
Collaborative Research: SoD-TEAM: A Feedback-Based Architecture for Highly Reliable Embedded Software
合作研究:SoD-TEAM:基于反馈的高度可靠嵌入式软件架构
  • 批准号:
    0613655
  • 财政年份:
    2006
  • 资助金额:
    $ 27.04万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了