作者: Bill Tsoumas , Stelios Dritsas , Dimitris Gritzalis
DOI: 10.1007/11560326_12
关键词:
摘要: Complexity of modern information systems (IS), impose novel security requirements. On the other hand, ontology paradigm aims to support knowledge sharing and reuse in an explicit mutually agreed manner. Therefore, this paper we set foundations for establishing a knowledge-based, ontology-centric framework with respect management arbitrary IS. We demonstrate that linking between high-level policy statements deployable controls is possible implementation achievable. This may critical expert activities requirements identification selection certain countermeasures. In addition, present structured approach identify its parts. Our being represented neutral manner, based on well-known standards, extending widely used modeling approaches.