PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
September 1, 2006276 citations

Towards Regulatory Compliance: Extracting Rights and Obligations to Align Requirements with Regulations

View Full Paper
TBTravis D. BreauxMVMatthew W. VailAAAnnie I. Antón

Key Points

Key points are not available for this paper at this time.

Abstract

In the United States, federal and state regulations prescribe stakeholder rights and obligations that must be satisfied by the requirements for software systems. These regulations are typically wrought with ambiguities, making the process of deriving system requirements ad hoc and error prone. In highly regulated domains such as healthcare, there is a need for more comprehensive standards that can be used to assure that system requirements conform to regulations. To address this need, we expound upon a process called semantic parameterization previously used to derive rights and obligations from privacy goals. In this work, we apply the process to the privacy rule from the U.S. Health Insurance Portability and Accountability Act (HIPAA). We present our methodology for extracting and prioritizing rights and obligations from regulations and show how semantic models can be used to clarify ambiguities through focused elicitation and to balance rights with obligations. The results of our analysis can aid requirements engineers, standards organizations, compliance officers, and stakeholders in assuring systems conform to policy and satisfy requirements

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Breaux et al. (2006) studied this question.

synapsesocial.com/papers/6a0f93718090e499da5fec83https://doi.org/10.1109/re.2006.68
Ask AI
Helpful
Bookmark
Share
View Full Paper

Also Consider

Synapse has enriched 5 closely related papers on similar clinical questions. Consider them for comparative context:

  1. 1Standards for Privacy of Individually Identifiable Health Information2001 · 287 citations
  2. 2Agency and Deontic Logic2001 · 363 citations
  3. 3Logic-based regulation compliance-assistance2003 · 84 citations
  4. 4Modeling security requirements through ownership, permission and delegation2005 · 215 citations
  5. 5The use of goals to surface requirements for evolving systems2002 · 121 citations