New laws,such as HIPAA and SOX,are increasingly impacting the design of software systems,as business organisations strive to comply. This paper studies the problem of generating a set of requirements for a new system which comply with a given law. Specifically,the paper proposes a systematic process for generating law-compliant requirements by using a taxonomy of legal concepts and a set of primitives to describe stakeholders and their strategic goals. Given a model of law and a model of stakeholders goals,legal alternatives are identified and explored. Strategic goals that can realise legal prescriptions are systematically analysed,and alternative ways of fulfilling a law are evaluated. The approach is demonstrated by means of a case study. This work is part of the Nomos framework,intended to support the design of law-compliant requirements models.

Formalization and validation of a subset of the European Train Control System / Chiappini, Angelo; Cimatti, Alessandro; Macchi, Luca; Rebollo, Oscar; Roveri, Marco; Susi, Angelo; Tonetta, Stefano; Vittorini, Berardino. - 2:(2010), pp. 109-118. (Intervento presentato al convegno ICSE tenutosi a Cape Town, South Africa nel 01-08/05/2010) [10.1145/1810295.1810312].

Formalization and validation of a subset of the European Train Control System

Alessandro Cimatti;Marco Roveri;Angelo Susi;Stefano Tonetta;
2010-01-01

Abstract

New laws,such as HIPAA and SOX,are increasingly impacting the design of software systems,as business organisations strive to comply. This paper studies the problem of generating a set of requirements for a new system which comply with a given law. Specifically,the paper proposes a systematic process for generating law-compliant requirements by using a taxonomy of legal concepts and a set of primitives to describe stakeholders and their strategic goals. Given a model of law and a model of stakeholders goals,legal alternatives are identified and explored. Strategic goals that can realise legal prescriptions are systematically analysed,and alternative ways of fulfilling a law are evaluated. The approach is demonstrated by means of a case study. This work is part of the Nomos framework,intended to support the design of law-compliant requirements models.
2010
Proceedings of 32nd Int. Conference on Software Engineering
USA
ACM
9781605587196
Chiappini, Angelo; Cimatti, Alessandro; Macchi, Luca; Rebollo, Oscar; Roveri, Marco; Susi, Angelo; Tonetta, Stefano; Vittorini, Berardino
Formalization and validation of a subset of the European Train Control System / Chiappini, Angelo; Cimatti, Alessandro; Macchi, Luca; Rebollo, Oscar; Roveri, Marco; Susi, Angelo; Tonetta, Stefano; Vittorini, Berardino. - 2:(2010), pp. 109-118. (Intervento presentato al convegno ICSE tenutosi a Cape Town, South Africa nel 01-08/05/2010) [10.1145/1810295.1810312].
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11572/258801
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 30
  • ???jsp.display-item.citation.isi??? ND
social impact