Security Risk Management in IT Projects based on Workflow Mining

Nkondock M.B. Nicolas, Etame M. Frankie, Atsa E. Roger. Published in Information Sciences.

Communications on Applied Electronics
Year of Publication: 2015
Publisher: Foundation of Computer Science (FCS), NY, USA
Authors: Nkondock M.B. Nicolas, Etame M. Frankie, Atsa E. Roger

Over time, IT projects face several risk that can lead to failures, like security ones. Thus, security risk management and risk management in general in a project is a major issue that the success of the project depends. The sources of security risk are varied in an IT project. Risks should be a comprehensive study by the IT project managers in order to prevent or stop their harmful effects. In this paper, a new approach based on the workflow mining and to manage security risks in an IT project is defined. It is based on the analysis of event logs associated to resources used in a project to identify and analyze security risks therein and therefore able to offer a solution to address them. As a result, patterns of identification and treatment of risks are proposed on the basis of a policy of risk management.


Risk, risk management, IT project, workflow mining