Modeling Security Requirements: Extending SysML with Security Requirements Engineering Concepts

Ilham Maskani, Jaouad Boutahar, Souhaïl El Ghazi El Houssaïni Published in Security

International Journal of Applied Information Systems
Year of Publication: 2017
Publisher: Foundation of Computer Science (FCS), NY, USA
Authors:Ilham Maskani, Jaouad Boutahar, Souhaïl El Ghazi El Houssaïni
In Security Requirements Engineering, many approaches offer different ways to model security requirements. This paper presents a model that can be used in conjunction with any of the former approaches. The model is an extension of SysML requirements diagrams that adds concepts from Security Requirements Engineering: Stakeholder, Goal, Asset and Risk. The proposed model is illustrated by applying it to a telemedicine system.


Requirements modeling; Security Requirements Engineering; SysML Extension