Security Engineering for Lifelong Evolvable Systems

SeCMER: A Tool to Gain Control of Security Requirements Evolution

TitleSeCMER: A Tool to Gain Control of Security Requirements Evolution
Publication TypeBook Chapter
Year of Publication2011
AuthorsBergmann, G., F. Massacci, F. Paci, T. Tun, D. Varró, and Y. Yu
Secondary AuthorsAbramowicz, W., I. Llorente, M. Surridge, A. Zisman, and J. Vayssière
Book TitleTowards a Service-Based Internet
Series TitleLecture Notes in Computer Science
PublisherSpringer Berlin / Heidelberg
ISBN Number978-3-642-24754-5

This paper presents SeCMER, a tool for requirements evolution management developed in the context of the SecureChange project. The tool supports automatic detection of requirement changes and violation of security properties using change-driven transformations. The tool also supports argumentation analysis to check security properties are preserved by evolution and to identify new security properties that should be taken into account.