%0 Conference Proceedings %T A Methodology for the Development and Verification of Access Control Systems in Cloud Computing %+ University of Macedonia [Thessaloniki] (UoM) %A Gouglidis, Antonios %A Mavridis, Ioannis %Z Part 3: Security, Access Control and Legal Requirements in Cloud Systems %< avec comité de lecture %( IFIP Advances in Information and Communication Technology %B 12th Conference on e-Business, e-Services, and e-Society (I3E) %C Athens, Greece %Y Christos Douligeris %Y Nineta Polemi %Y Athanasios Karantjias %Y Winfried Lamersdorf %I Springer %3 Collaborative, Trusted and Privacy-Aware e/m-Services %V AICT-399 %P 88-99 %8 2013-04-25 %D 2013 %R 10.1007/978-3-642-37437-1_8 %K Security %K Inter-organizational systems %K Cloud business %K Verification %Z Computer Science [cs] %Z Computer Science [cs]/Networking and Internet Architecture [cs.NI]Conference papers %X Cloud computing is an emergent technology that has generated significant interest in the marketplace and is forecasted for high growth. Moreover, Cloud computing has a great impact on different type of users from individual consumers and businesses to small and medium size (SMBs) and enterprise businesses. Although there are many benefits to adopting Cloud computing, there are significant barriers to adoption, viz. security and privacy. In this paper, we focus on carefully planning security aspects regarding access control of Cloud computing solutions before implementing them and, furthermore, on ensuring they satisfy particular organizational security requirements. Specifically, we propose a methodology for the development of access control systems. The methodology is capable of utilizing existing security requirements engineering approaches for the definition and evaluation of access control models, and verification of access control systems against organizational security requirements using techniques that are based on formal methods. A proof of concept example is provided that demonstrates the application of the proposed methodology on Cloud computing systems. %G English %Z TC 6 %Z WG 6.11 %2 https://inria.hal.science/hal-01470549/document %2 https://inria.hal.science/hal-01470549/file/978-3-642-37437-1_8_Chapter.pdf %L hal-01470549 %U https://inria.hal.science/hal-01470549 %~ IFIP %~ IFIP-AICT %~ IFIP-TC %~ IFIP-WG %~ IFIP-TC6 %~ IFIP-WG6-11 %~ IFIP-I3E %~ IFIP-AICT-399