今回のGRACEセミナーでは,セキュリティパターンで著名なフロリダアトランティック大学のEduardo B. Fernandez教授にお招きし,セキュリティパターンを使って安全なクラウドサービスを構築する方法を、チュートリアル形式でご紹介していただきます。


◆◆第85回GRACEセミナー ◆◆

【会場】国立情報学研究所(NII) 20F ミーティングルーム(2009/2010)
〒101-8430 東京都千代田区一ツ橋2-1-2





Title: (Mini-Tutorial) Building Secure Cloud Architectures and Ecosystems Using Patterns

Speaker: Prof. Eduardo B. Fernandez,
Dept. of Computer and Electrical Eng. and Computer Science,
Florida Atlantic University

Abstract: Patterns abstract good practices to define basic models that can be used to build new systems and evaluate existing systems. Security patterns join the extensive knowledge accumulated about security with the structure provided by patterns to provide guidelines for secure system requirements, design, and evaluation. We have built a catalogue of over 100 security patterns, which is still growing. We complement these patterns with misuse patterns, which describe how an attack is performed from the point of view of the attacker and describe how it can be stopped. We integrate patterns in the form of security reference architectures (SRAs) and we extend them to their ecosystems. We show how to build a SRA for a cloud and its ecosystem. The use of patterns can provide a holistic view of security, which is a fundamental principle to build secure systems. The patterns and reference architectures are shown using UML models and examples are taken from my two books on security patterns as well as from my recent publications.


Eduardo B. Fernandez (Eduardo Fernandez-Buglioni) is a professor in the Department of Computer Science and Engineering at Florida Atlantic University in Boca Raton, Florida, USA He has published numerous papers on authorization models, object-oriented analysis and design, and security patterns. He has written four books on these subjects, the most recent being a book on security patterns. He has lectured all over the world at both academic and industrial meetings. He has created and taught several graduate and undergraduate courses and industrial tutorials. His current interests include security patterns, cloud computing security, and software architecture. He holds a MS degree in Electrical Engineering from Purdue University and a Ph.D. in Computer Science from UCLA. He is a Senior Member of the IEEE, and a Member of ACM. He is an active consultant for industry, including
assignments with IBM, Allied Signal, Motorola, Lucent, Huawei, and others. More details can be found at http://faculty.eng.fau.edu/fernande/

【主催】国立情報学研究所 GRACEセンター
国立情報学研究所 石川冬樹(seminar-steering_AT_grace-center.jp)
※ __AT__をアットマークで置き換えてください。

