scispace - formally typeset
J

Jaime A. Pavlich-Mariscal

Researcher at Pontifical Xavierian University

Publications -  45
Citations -  251

Jaime A. Pavlich-Mariscal is an academic researcher from Pontifical Xavierian University. The author has contributed to research in topics: Role-based access control & Software development process. The author has an hindex of 7, co-authored 45 publications receiving 233 citations. Previous affiliations of Jaime A. Pavlich-Mariscal include University of Connecticut & Catholic University of the North.

Papers
More filters
Proceedings ArticleDOI

A security framework for XML schemas and documents for healthcare

TL;DR: A security framework that aims to have an XML document (CCR instance) appear differently to authorized users at different times based on a user's role, constraints, separation of duty, delegation of authority, etc, and enforcement at the runtime level on XML instances to insure that correct and required patient data is securely delivered.
Journal ArticleDOI

A framework of composable access control features: Preserving separation of access control concerns from models to code

TL;DR: An approach to realize access control diagrams and features in code through structure-preserving mappings is described, three different approaches to enforce access control in code are described, and the way each of them separate access control from other concerns is evaluated.
Book ChapterDOI

A formal enforcement framework for role-based access control using aspect-oriented programming

TL;DR: A formal framework for the security of software applications is introduced that supports the automatic translation of a role-slice access-control policy (RBAC requirements) into aspect-oriented programming (AOP) enforcement code that is seamlessly integrated with the application.
Book ChapterDOI

Role slices: a notation for RBAC permission assignment and enforcement

TL;DR: An approach to integrate role-based access control (RBAC) into UML at design-time for permission assignment and enforcement is presented, supported via a new UML role-slice diagram, to capture RBAC privileges at design time within UML.
Journal ArticleDOI

A framework for security assurance of access control enforcement code

TL;DR: This paper proposes a security assurance mechanism that formalizes the application behavior using labeled transition systems and structural operational semantics (Plotkin, 1981) and proves correctness of two access control enforcement mechanisms that are part of the case study.