To main content

Using dependent CORAS diagams to analyse mutual dependency

Abstract

The CORAS method for security risk analysis provides a customized language, the CORAS diagrams, for threat and risk modelling. In this paper, we extend this language to capture context dependencies, and use it as a means to analyse mutual dependency. We refer to the extension as dependent CORAS diagrams. We define a textual syntax using EBNF and explain how a dependent CORAS diagram may be schematically translated via the textual syntax into a paragraph in English, characterizing its intended meaning. Then we demonstrate the suitability of the language by means of a core example.

Category

Academic article

Language

English

Author(s)

  • Gyrd Brændeland
  • Ketil Stølen
  • Heidi Elisabeth Iuell Dahl
  • Iselin Engan

Affiliation

  • University of Oslo
  • SINTEF

Year

2008

Published in

Lecture Notes in Computer Science (LNCS)

ISSN

0302-9743

Publisher

Springer

Issue

5141

Page(s)

135 - 148

View this publication at Cristin