ACM Home Page
Please provide us with feedback. Feedback
Separation, review and supervision controls in the context of a credit application process: a case study of organisational control principles
Full text PdfPdf (116 KB)
Source Symposium on Applied Computing archive
Proceedings of the 2004 ACM symposium on Applied computing table of contents
Nicosia, Cyprus
SESSION: Organizational engineering (OE) table of contents
Pages: 1380 - 1384  
Year of Publication: 2004
ISBN:1-58113-812-1
Authors
Andreas Schaad  Information Systems Assurance & Advisory Services, Ernst & Young LLP, More London Place, London
Jonathan Moffett  University of York, York, United Kingdom
Sponsor
SIGAPP: ACM Special Interest Group on Applied Computing
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 6,   Downloads (12 Months): 46,   Citation Count: 2
Additional Information:

abstract   references   cited by   index terms   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/967900.968177
What is a DOI?

ABSTRACT

This paper presents a case study of the organisational control principles present in a credit application process at the branch level of a bank. The case study has been performed in the context of an earlier suggested formal framework [6] for organisational control principles based on the Alloy predicate logic and its facilities for automated formal analysis and exploration [2].In particular, we establish and validate the novel concepts of specific and general obligations. The delegation of these two kinds of obligations must be controlled by means of review and supervision controls. The example of a credit application process is used to discuss these organisational controls.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

 
1
2
 
3
4
5
 
6
Schaad, A., A Framework for Organisational Control Principles, in Department of Computer Science. 2003, University of York.
7
8
9
 
10
Gligor, V., S. Gavrila, and D. Ferraiolo. On the Formal Definition of Separation-of-Duty Policies and their Composition. in IEEE Symposium on Security and Privacy. 1998. Oakland, CA.
 
11
Urwick, L., Notes on the Theory of Organization. 1952: American Management Association.
 
12
 
13
14
15
16
17
 
18


Collaborative Colleagues:
Andreas Schaad: colleagues
Jonathan Moffett: colleagues