SERENITY differentiates security requirements and mechanisms at three basic layers: Business and organisational; workflow and services; and network and devices. The key to success is to capture security expertise in such a way that it can be supported by automated means.
Through the materialization of the concepts of
"Security and Dependability Pattern" and
"Integration Schemes", SERENITY will capture the expertise of security engineers, making it available for automated processing, complemented by mechanisms for monitoring the systems' behaviour and integrated in a common framework. The automation is essential in the highly dynamic environments. SERENITY will provide support for the dynamic supervision and adaptation of security of systems to changes in AmI ecosystems.
The foundations of an integrated, solid, flexible and practical security and dependability framework for AmI ecosystems lies on two key innovations in the approach :
Patterns and Integration Schemes and
Run-time support. Both factors are mutually dependent and necessary. The former defines security requirements and mechanisms that address them, and also contextual assumptions underpinning the solutions and their interdependencies. The latter allows the dynamic adaptation and evolution of those solutions.
SERENITY differentiates security requirements and mechanisms at
three basic layers: Business and organisational; workflow and services; and network and devices. This distinction will reflect the typical layers of systems architecture that SERENITY wants to address, the diversity of responsibility for providing security measures, and the conceptual models at which security requirements and mechanisms can be specified.