<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Alban Gabillon | Vincent Lalanne's homepage</title><link>https://lalannev.perso.univ-pau.fr/en/authors/alban-gabillon/</link><atom:link href="https://lalannev.perso.univ-pau.fr/en/authors/alban-gabillon/index.xml" rel="self" type="application/rss+xml"/><description>Alban Gabillon</description><generator>HugoBlox Kit (https://hugoblox.com)</generator><language>en-US</language><lastBuildDate>Mon, 16 Sep 2013 00:00:00 +0000</lastBuildDate><item><title>Risk Management in Service-Oriented Information Systems</title><link>https://lalannev.perso.univ-pau.fr/en/publications/paper-conference/2013-sarssi-vl/</link><pubDate>Mon, 16 Sep 2013 00:00:00 +0000</pubDate><guid>https://lalannev.perso.univ-pau.fr/en/publications/paper-conference/2013-sarssi-vl/</guid><description>&lt;h3 id="poster-presentation"&gt;Poster presentation&lt;/h3&gt;
&lt;p&gt;The interconnection of information systems is a reality, in particular with the development of service-oriented architectures (SOA) as they allow the creation of new services by composing (orchestration, choreography) existing services on the Internet. These services may have very diverse functionalities: computation, data storage, consulting remote information (catalogues, timetables). Web services (WS) are one of the most used technologies currently for such architectures.&lt;/p&gt;
&lt;p&gt;After detailing the different technologies implemented in securing these web services, we propose an innovative approach implementing a risk management related to the use of these services. This approach relies on the ISO/IEC 27005:2011 standard which we intend to extend to services.&lt;/p&gt;
&lt;p&gt;The design of infrastructures relying on external services is not without raising problems regarding information systems security (ISS). This concerns not only the classic criteria of confidentiality, integrity and availability, but also notions such as traceability or trust, with &lt;strong&gt;controllability&lt;/strong&gt; of information as a corollary.&lt;/p&gt;</description></item><item><title>Information Security Risk Management in a World of Services</title><link>https://lalannev.perso.univ-pau.fr/en/publications/paper-conference/passat-2013/</link><pubDate>Sun, 08 Sep 2013 00:00:00 +0000</pubDate><guid>https://lalannev.perso.univ-pau.fr/en/publications/paper-conference/passat-2013/</guid><description/></item></channel></rss>