Achieving life-cycle compliance of service-oriented architectures : Open issues and challenges

Scholte, Theodoor; Kirda, Engin
SETOP 2009, Lecture Notes in Computer Science, Springer, Volume 5939/2010, ISBN: 978-3-642-11206-5

The introduction of regulations such as the Sarbanes-Oxley act requires companies to ensure that appropriate controls are implemented in their business applications. Implementing and validating compliance measures in 'agile' companies is time consuming, costly, error-prone and a maintenance-intensive task. This paper presents an approach towards dynamically adapting a Service Oriented Architecture (SOA) such that business applications remain compliant. In order to ensure compliance, a compliance checking mechanism for the SOA is needed. Upon detection of a threat/violation, the components of a business application are adapted using aspect-oriented programming (AOP). In this paper, we discuss the fundamental problems and we give an architectural description of our approach.

DOI
Type:
Conférence
Date:
2010-03-10
Department:
Sécurité numérique
Eurecom Ref:
3057
Copyright:
© Springer. Personal use of this material is permitted. The definitive version of this paper was published in SETOP 2009, Lecture Notes in Computer Science, Springer, Volume 5939/2010, ISBN: 978-3-642-11206-5 and is available at : http://dx.doi.org/10.1007/978-3-642-11207-2_19
See also:

PERMALINK : https://www.eurecom.fr/publication/3057