Scientific and Technical Journal


ISSN Print 2221-3937
ISSN Online 2221-3805
It is proposed a dynamic classification model of software applications, that are part of business critical systems (BCS). Software applications were classified on the degree of access security.
The purpose of researches is the development of synthesis methods of access control in a business critical system based on the model of dynamic classification.
The subject of the research is the process of user access control.
Practical result of research - it is performed to identify the most critical class of software applications from the point of view of compliance with the limit values of metrics security policy priority for further reengineering role access control.
The information technology was developed, which identifies three classes of safety-critical software regarding applications access. This allows to hold the reengineering of user roles. An example of application of technology and the assessment of its effectiveness were presented.
The application of this approach in the access control to BCS has allowed: 1) to increase the effectiveness of reengineering access policies in the BCS; 2) to reduce the number of vulnerabilities and conflict situations that arise due to an incorrect determination of the level of user access; 3) to provide a decision support system that allows the decision maker, adaptively configure user access profiles for the effective control of security policies in the BCS.
