Faily, S., Iacob, C., Ali, R. and Ki-Aries, D., 2020. Identifying Implicit Vulnerabilities through Personas as Goal Models. In: 4th International Workshop on SECurity and Privacy Requirements Engineering (SECPRE 2020), 14-18 September 2020, Virtual.
Full text available as:
|
PDF
manuscript(1).pdf - Published Version Available under License Creative Commons Attribution Non-commercial. 1MB | |
Copyright to original material in this document is with the original owner(s). Access to this content through BURO is granted on condition that you use it only for research, scholarly or other non-commercial purposes. If you wish to use it for any other purposes, you must contact BU via BURO@bournemouth.ac.uk. Any third party copyright material in this document remains the property of its respective owner(s). BU grants no licence for further use of that third party material. |
Abstract
When used in requirements processes and tools, personas have the potential to identify vulnerabilities resulting from misalignment between user expectations and system goals. Typically, however, this potential is unfulfilled as personas and system goals are captured with different mindsets, by different teams, and for different purposes. If personas are visualised as goal models, it may be easier for stakeholders to see implications of their goals being satisfied or denied, and designers to incorporate the creation and analysis of such models into the broader RE tool-chain. This paper outlines a tool-supported approach for finding implicit vulnerabilities from user and system goals by reframing personas as social goal models. We illustrate this approach with a case study where previously hidden vulnerabilities based on human behaviour were identified.
Item Type: | Conference or Workshop Item (Paper) |
---|---|
Group: | Faculty of Science & Technology |
ID Code: | 34422 |
Deposited By: | Symplectic RT2 |
Deposited On: | 12 Aug 2020 08:13 |
Last Modified: | 14 Mar 2022 14:23 |
Downloads
Downloads per month over past year
Repository Staff Only - |