[dbsec] BPM Workshop on Workflow Security Audit and Certification (WfSAC)

  • From: Rafael Accorsi <rafael.accorsi@xxxxxxxxxxxxxxxxxxx>
  • To: dbsec@xxxxxxxxxxxxx
  • Date: Fri, 04 Mar 2011 11:02:13 +0100

[Apologies for cross postings.]


WfSAC 2011: Workshop on Workflow Security Audit and Certification
See <http://www.telematik.uni-freiburg.de/wfsac> for keynotes/updates

Co-located with the 9th Conf. on Business Process Management
<http://bpm2011.isima.fr/>, Clermont-Ferrand, France

Despite the growing demand for compliant business processes, security
and privacy incidents caused by flawed workflow specifications are
still soaring.  Certification as a means to provably attest workflows'
adherence to security properties and auditing to detect violations
happening at runtime are essential instruments to achieve reliably
secure process-aware information systems.  WfSAC brings together
researchers working on well-founded methods for workflow security
audit and certification and industry applying these methods in
practical cases.  WfSAC welcomes contributions with a
multidisciplinary character such as economic, legal, and
standardization aspects.

Topics of interest include:

Accountability                Formalization of security requirements
Access and usage control      Information flow control
Audit reduction               Large-scale auditing
Automated security analysis   Log-formats and security
Behavioral workflow analysis  Meta-models for analysis
Business provenance           Practical experiences
Case studies                  Process mining and reconstruction
Certification/audit standards Workflow forensics
Continuous audit              Workflow similarity
Elucidation of requirements   Workflow transformation
Economic and legal aspects    Workflow redesign

*Submission guidelines*
Submitted manuscripts must be written in English and no longer than
12 pages.  They must be anonymous and comply with the LNBIP format.
(The submission website will be up soon.)  Submissions will be reviewed
by three PC members based on their originality, significance, technical
soundness and clarity of exposition.  Submitted manuscripts must not
substantially overlap manuscripts that have been published or that are
simultaneously submitted to a conference with proceedings or a journal.

*Important dates*
 Submission deadline: May 15, 2011
 Notification of acceptance: July 1, 2011
 Camera-ready version: July 31, 2011

*Organizing committee*
 Rafael Accorsi (Freiburg U, DE)
 Wil van der Aalst (Eindhoven TU, NL)

*Confirmed PC members*
 Achim Brucker (SAP Labs, DE)
 Fabio Casati (Trento U, IT)
 Jason Crampton (London U, UK)
 Isao Echizen (NII, JP)
 Aditya Ghose (Wollongong U, AU)
 Jana Koehler (Lucerne HS, CH)
 Niels Lohmann (Rostock U, DE)
 Heiko Ludwig (IBM Research, US)
 Alexander Maedche (Mannheim U, DE)
 Raimundas Matulevicius (Tartu U, EE)
 Birgit Pfitzmann (IBM Research, US)
 Silvio Ranise (FBK, IT)
 Stefanie Rinderle-Ma (Vienna U, AT)
 Shazia Sadiq (Queensland U, AU)
 Pierangela Samarati (Milan U, IT)
 Christian Schlaeger (Ernst & Young, DE)
 Steffen Staab (Koblenz U, DE)
 Thomas Stocker (Freiburg U, DE)
 Barbara Weber (Innsbruck U, AT)
 Jan Martijn van der Werf (Eindhoven TU, NL)
 Nicola Zannone (Eindhoven TU, NL)

Dr. Rafael Accorsi

Other related posts: