STS-Tool: Security Requirements Engineering for Socio-Technical Systems

Elda Paja, Fabiano Dalpiaz, Paolo Giorgini

    Research output: Chapter in Book/Report/Conference proceedingChapterAcademicpeer-review

    Abstract

    We present the latest version of STS-Tool, the modelling and analysis support tool for STS-ml, an actor- and goal-oriented security requirements modelling language for socio-technical systems. We show how the STS-Tool supports requirements analysts and security designers in (i) modelling socio-technical systems as a set of interacting actors, who have security needs over their interactions, and (ii) deriving security requirements for the system-to-be. The tool integrates a set of automated reasoning techniques that allow checking if a given STS-ml model is well-formed, verifying whether there are any conflicts among security requirements, and calculating the threat trace of events threatening actors’ assets. We first illustrate the modelling and reasoning activities supported by STS-ml, to then guide the design of a secure socio-technical system from the eGovernment domain through a series of exercises.
    Original languageEnglish
    Title of host publicationEngineering Secure Future Internet Services and Systems - Current Research
    EditorsM. Heisel, W. Joosen, J. Lopez, F. Martinelli
    PublisherSpringer
    Pages65-96
    Number of pages32
    ISBN (Print)978-3-319-07451-1
    DOIs
    Publication statusPublished - 2014

    Publication series

    NameLecture Notes in Computer Science
    Number8431

    Fingerprint

    Dive into the research topics of 'STS-Tool: Security Requirements Engineering for Socio-Technical Systems'. Together they form a unique fingerprint.

    Cite this