arrow
Return

Linking data and process perspectives for conformance analysis

delete2018-03-01
delete49
PRE
AI
M
Mahdi Alizadeh *
X
Xixi Lu
D
Dirk Fahland
N
Nicola Zannone
W
Wil M. P. van der Aalst
DOI:10.1016/j.cose.2017.10.010delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
The detection of data breaches has become a major challenge for most organizations. The problem lies in the fact that organizations often lack proper mechanisms to control and monitor users' activities and their data usage. Although several auditing approaches have been proposed to assess the compliance of actual executed behavior, existing approaches focus on either checking data accesses against security policies (data perspective) or checking user activities against the activities needed to conduct business processes (process perspective). Analyzing user behavior from these perspectives independently may not be sufficient to expose security incidents. In particular, security incidents may remain undetected or diagnosed incorrectly. This paper proposes a novel auditing approach that reconciles the data and process perspectives, thus enabling the identification of a large range of deviations. In particular, we analyze and classify deviations with respect to the intended purpose of data and the context in which data are used, and provide a novel algorithm to identify non-conforming user behavior. The approach has been implemented in the open source framework ProM and was evaluated through both controlled experiments and a case study using real-life event data. The results show that the approach is able to accurately identify deviations in both data usage and control-flow, while providing the purpose and context of the identified deviations. (C) 2017 Elsevier Ltd. All rights reserved.
Keywords:
Auditing
Compliance checking
Conformance checking
Process mining
Alignments
Multi-perspective analysis
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

C
Computers and Security
IF:
5.4
Papers:
4.6K
Citations:
1.4W

Organization

E
Eindhoven University of Technology
Scholars:
1.6W
Papers: 1.5W
Citations: 2.2W