ObjectSecurity Products Services News+Events Customers+Partners Industries Contact
OpenPMF 2.0 Model Driven Security Management
Home  Presentations and papers archive 
Company overview

ObjectSecurity has published many presentations, white papers, articles and conference papers over the last years. Here is the full list of our non-confidential publications. Please contact us if you would like to get some of these publications.

This page lists all conference and workshop publications and presentations, as well as other peer-reviewed articles. Our products and services flyers and white papers are not listed here - please consult our products and services pages instead.

 

  Click here to ask us for any of these publications

 

2008  
Sep

ObjectSecurity will present "Secure Model Driven Information Exchange " at the Future Security Symposium 2008, Karlsruhe, Germany, 10 September 2008.

Jun

ObjectSecurity will present "Rapid Model-driven Simulation/Prototyping/Testing of Secure Information Sharing in Distributed Systems" at the ITEC Conference 2008, Stockholm, Sweden, 10-12 June 2008.

May

ObjectSecurity will present"Airport operations optimisation through agile, secure IT integration" with Eamonn Cheverton, Enterprise Architect, BAA, at the Airport IT conference (Berlin ILA), Berlin, Germany, 28-29 May 2008

Apr

ObjectSecurity presents two peer-to-peer sessions "How can we secure SOA without losing agility?" at the RSA Conference 2008, San Francisco, CA, USA, 7-11 April 2008. Contact us to arrange a meeting. Abstract: In this Ask the Moderator session, ObjectSecurity discusses how SOA security must go beyond web services security. The core issue is how to specify and maintain consistent/effective security policies for *agile* SOA. This cannot be done manually (too complex/labor-intensive). New approaches such as Model Driven Security are needed. Session topics incl. security stove-piping, how to reduce cost/effort, architecture approaches, experiences, secure BPM SOA." (P2P-205A, 9 Apr 2008, 1:40 PM - 2:30 PM, and repeat session April 9 at 5:40pm – 6:30pm).

Apr

ObjectSecurity published a short article Model Driven Security helps simplify IT security management in the ICT TechNews newsletter April 2008 (article).

Apr

ObjectSecurity presented "The SOA Security Hurdle" with Intel at the RSA Conference Executive Briefing Center, San Francisco, CA, USA, 7-11 April 2008.

Mar

ObjectSecurity presented OpenPMF™ 2.0 Model Driven Security at the Libraryhouse Innovation & Growth Forum 2008, London, UK, 17 March 2008

Mar

ObjectSecurity held a workshop session "OMG standards for Model Driven Security - How can we secure SOA without losing agility?" on Thursday 13 March 2008 at the Software Assurance group (SwA) at the OMG technical meeting, Washington DC, USA , 10-14 March 2008. A related presentation "A Model Driven Security approach for SOA" will also be presented on Tuesday 11 March 2008 at the SOA group. Abstract: ObjectSecurity discusses the need for OMG standards for Model Driven Security, and how SOA security must go beyond web services security. The core issue is how to specify and maintain consistent/effective security policies for *agile* SOA. This cannot be done manually (too complex/labor-intensive). New approaches such as Model Driven Security are needed. Session topics incl. security stove-piping, how to reduce cost/effort, architecture approaches, experiences, secure BPM SOA."

Feb

ObjectSecurity presented an SME showcase "OpenPMF 2.0 and Model Driven Security" at the Exploring Breakthrough Security Technologies event in London, UK, 13 February 2008. Contact us to arrange a meeting.

2007  
Dec

ObjectSecurity held a workshop session "OMG standards for Model Driven Security - How can we secure SOA without losing agility?" on Thursday 13 March 2008 at the Software Assurance group (SwA) at the OMG technical meeting, Washington DC, USA , 10-14 March 2008. A related presentation "A Model Driven Security approach for SOA" will also be presented on Tuesday 11 March 2008 at the SOA group. Abstract: ObjectSecurity discusses the need for OMG standards for Model Driven Security, and how SOA security must go beyond web services security. The core issue is how to specify and maintain consistent/effective security policies for *agile* SOA. This cannot be done manually (too complex/labor-intensive). New approaches such as Model Driven Security are needed. Session topics incl. security stove-piping, how to reduce cost/effort, architecture approaches, experiences, secure BPM SOA."

Nov

ObjectSecurity presents Secure information sharing and effective security management for ATM at the UK ATM-KN Industry Showcase Event at the British Airports Group Offices, London, 08 November 2007

Nov

ObjectSecurity presents Rapid prototyping, simulation, testing of secure information sharing in distributed systems at the 5th Annual Simulation & Synthetic Environments Symposium, London, 06 November 2007

Oct

ObjectSecurity presents Rapid prototyping, simulation, testing of secure information sharing in distributed systems at the QinetiQ Synthetic Air Traffic Environment event, Farnborough, 29 October 2007

Sept

ObjectSecurity presents a paper "Model Driven Security (MDS) management and enforcement to support SOA-style agility" at the Information Security Solutions Europe (ISSE) conference, Warsaw, Poland, 26 September 2007

Sep

ObjectSecurity reviewed the Gartner publications Model-Driven Security: Enabling a Real-Time, Adaptive Security Infrastructure and Tear Down Application Authorization Silos With Authorization Management Solutions. ObjectSecurity is listed as an innovative enterprise authorization management solutions vendor in the reports and on the Hype Cycle for Information Security, 2007. September 2007 (more)

Jul

ObjectSecurity presents Simplifying security management of cross-organisation collaborative decision making at ECIW 2007: The 6th European Conference on Information Warfare and Security Defence College of Management and Technology, 2-3 July 2007, Shrivenham, UK

Jun

ObjectSecurity presents Simplifying security management using model driven security: SecureMDA™, OpenPMF™, TrustedSOA™ (bmi/07-06-10) at the OMG Technical Meeting, 28 June 2007, Brussels, Belgium

May

ObjectSecurity presents Simplifying security policies by using model-driven engineering at Code Generation 22007, 18-20 May 2007, Cambridge, UK.

Apr

ObjectSecurity (with T. Ritter/J. Reznik from Fraunhofer FOKUS) published a paper Model Driven Development of Security Aspects at the Electronic Notes in Theoretical Computer Science
Volume 163, Issue 2, 16 April 2007, Pages 65-79
Proceedings of the Second International Workshop on Aspect-Based and Model-Based Separation of Concerns in Software Systems (ABMB 2006).

Mar

ObjectSecurity presents The need for a standard secure information sharing infrastructure for airport terminals at the 12th International Conference and Exhibition for Passenger Terminal Technology, Security, Design, Operations and Management, Barcelona, Spain, 27-29 March 2007.

Mar

ObjectSecurity presents Automatic model-driven security policy generation for high assurance systems (with the US Naval Research Laboratory and Fraunhofer FOKUS) at the OMG Software Assurance Workshop, Washington D.C., 5.-9. March 2007.

Feb ObjectSecurity presents Simplifying security policies by using model-driven engineering at the RSA Security Conference, San Francisco, 5.-9. February 2007. Please contact us to get the slides.
2006  
Dec

ObjectSecurity presented DDS Security - Architecture concepts for data distribution services at the OMG TC meeting in Washington D.C, 6 Decmber 2006

Nov

ObjectSecurity presents From Models to Secure Distributed Systems (with Fraunhofer FOKUS) at the 5th EUROCONTROL Innovative Research Workshop & Exhibition - Workshop Parallel Events (Visualization and Distributed Systems Technologies, the AD4 approach and beyond), Bretigny sur Orge, France, 5 December 2006

Nov

ObjectSecurity presents Building Secure and Interoperable ATC Systems (with Fraunhofer FOKUS) at the 5th EUROCONTROL Innovative Research Workshop & Exhibition - Workshop Parallel Events (Visualization and Distributed Systems Technologies, the AD4 approach and beyond), Bretigny sur Orge, France, 5 December 2006

Aug

ObjectSecurity published an article on Secure integration of existing ATM systems in Jane's Airport Review, in the October 2006 issue. The article describes the benefits of secure IT integration for ATM.

July

ObjectSecurity (with Fraunhofer FOKUS) published a paper on Generating High Assurance Security Policies with Model Transformations at the 2nd International Workshop on Aspect-Based and Model-Based Separation of Concerns in Software Systems (ABMB 2006), 10-12 July 2006, Bilbao, Spain

June

ObjectSecurity published an article about Simplifying Security in Complex IT Environments in the September issue of Information Security Bulletin

June

ObjectSecurity (with Fraunhofer FOKUS) published an improved version of the paper on Integrating Security Policies via Container Portable Interceptors in IEEE Distributed Systems Online, vol. 7, no. 7, 2006, art. no. 0607-o7001. The paper was invited after the Best Paper Award at the ARM2005 workshop.

2005  
Dec In December 2005, ObjectSecurity published a whitepaper on Integrated Security for Air Traffic Management IT Systems. This paper explains how to achieve secure integration and administration of the IT systems involved in air traffic management using ObjectSecurity's OpenPMF (A4 PDF, 8 pages) (more).
Nov In November 2005, ObjectSecurity published a paper on Integrating Security Policies via Container Portable Interceptors (with Fraunhofer FOKUS), at the ACM/IFIP/USENIX 6th International Middleware Conference, and the 4th Workshop on Adaptive and Reflective Middleware (ARM05), November 28th - December 2nd, 2005, Europole Congress Center, Grenoble, France.We received the Best Paper Award and an invitation to publish a new version in IEEE Distributed Systems Online.
Sep In September 2005, ObjectSecurity published a whitepaper on Information Security in Command & Control for Defense and Homeland Security. This paper explains how to achieve secure shared situational awareness and distributed collaborative working using ObjectSecurity's OpenPMF (US letter PDF, 8 pages) (more).
Sep On September 27, 2005, Ulrich Lang presented Integrated IT Security: Air-Traffic Management Case Study at the at the ISSE Conference in Budapest, Hungary, 26.-28.09.2005..
Jul On July 7, 2005, Ulrich Lang presented OpenPMF: Integrated Security Policy Management at the at the CALIBRE/RMLL2005 Open Source Conference in Dijon, France, 5.-9.07.2005.
2004  
Jun On September 29, 2004, Ulrich Lang presented OpenPMF Security Policy Framework for Distributed Systems at the Information Security Solutions Europe (ISSE 2004) Conference, Berlin, Germany
Jun On June 4, 2004, Rudolf Schreiner (and Marc Born & Tom Ritter, Fraunhofer FOKUS) presented Adaptive Middleware For Challenged Networks at the First International Workshop on Languages, Methods, and Tools for Model-driven Agile Development (MAD 2004), Naval Research Laboratory, Washington DC, USA
Jun On June 3, 2004, Rudolf Schreiner (and Marc Born & Tom Ritter, Fraunhofer FOKUS) presented Adaptive Middleware For Challenged Networks at the NATO Workshop 'Cross-Layer Issues in the Design of Tactical Mobile Ad Hoc Wireless Networks: Integration of Communication and Networking Functions to Support Optimal Information Management', US Naval Research Laboratory in Washington, DC
Apr April 26-30 2004, Rudolf Schreiner presented OpenPMF Policy Management Framework Managing Security Policies in Large Distributed Systems at the OMG Technical Meeting in St. Louis, MO, USA.
Apr April 26-30 2004, Rudolf Schreiner (and Dr. Ramesh Bharadwaj, US Naval Research Lab, Marc Born & Tom Ritter, Fraunhofer Fokus) presented Information Assurance and Access Control Requirements for for Combat Management Systems at the OMG Technical Meeting in St. Louis, MO, USA.
Mar On March 4, 2004, Ulrich Lang presented Modelling Security for Complex, Heterogeneous, Distributed IT Systems at the EU FET Consultation Workshop on "Communication Paradigms for 2020" at the European Commission, Brussels, Belgium
Feb On Feburary, 5, 2004, Rudolf Schreiner  - together with Dr. Ramesh Bharadwaj (US Naval Research Lab) and Dr. Marc Born (Fraunhofer Fokus) - presented Secure Middleware for Defence Applications at the OMG Technical Meeting in Anaheim, CA, USA
2003
Dec December 10-12, 2003 Dr. Ulrich Lang presented a paper on A Flexible, Model-Driven Security Framework for Distributed Systems: Policy Management Framework (PMF) at The IASTED International Conference on Communication, Network, and Information Security (CNIS 2003) in New York, USA.
Nov On November 18, 2003 Rudolf Schreiner and Dr. Ulrich Lang together with Dr. Marc Born (Fraunhofer Fokus) and Dr. Ramesh Bharadwaj (US Naval Research Lab) presented The CORBA Component Model and its new security framework: Policy Management Framework (PMF) at the OMG Security By Design Day in London, UK. 
Nov On November 4, 2003 Dr. Ulrich Lang presented A Flexible, Model-Driven Security Framework for Distributed Systems: Policy Management Framework (PMF) at the University of Cambridge Computer Laboratory in Cambridge, UK.
Oct On October 28, 2003 Rudolf Schreiner presented Komponenten-basierte Anwendungsentwicklung auf OpenSource-Plattformen - Die nächste Generation heterogener Middleware (component-based application development on open source platforms - the next generation of heterogeneous middleware) at the LinuxWorld Conference and Expo in Frankfurt, Germany
Oct October 14-16, 2003 Ulrich Lang presented A Flexible, Model-Driven Security Framework for Distributed Systems: Policy Management Framework (PMF) at The Ultimate Leading Edge International IT Conferences & Expos in Toronto, Canada.
Aug In August 2003 Tom Ritter from Fraunhofer Fokus and Rudolf Schreiner presented Flexible CORBA Components for Mission-Critical Distributed Applications at the "Role of Middleware in Systems Functioning over Mobile Wireless Networks Workshop" (Task Group 12 of the NATO Research and Technology Organization's Information Science and Technology Panel; hosted by FGAN/FKIE)
Jul In July 2003 Ulrich Lang presented Ein flexibles, modell-basiertes Sicherheitsframework für verteilte Systeme (a flexible, model-driven security framework for distributed systems): Policy Management Framework (PMF) at the Technical University Munich, Germany.
May In May 2003 Ulrich Lang presented COACH - A Component Based Open Source Architecture for Distributed Telecom Applications at the OMG Technical Committee Meeting in Paris, France.
Apr In April 2003 Ulrich Lang presented Model Driven Security (Policy Management Framework - PMF): Protection of Resources in Complex Distributed System at the DOCSec 2003 Workshop
Mar .In March 2003 Ulrich Lang submitted his Ph.D. dissertation on Access Policies for Middleware to the University of Cambridge Computer Laboratory - read the summary or download the dissertation.
2002  
Oct Rudolf Schreiner and Ulrich Lang co-authored a paper on SimpleGIS: Platform for Location Based Services, which will be presented at the Eurescom 2002 Summit in Heidelberg October 21-24, 2002.
Mar On March 19, 2002, Ulrich Lang gave a two hour tutorial about Integrated Enterprise Security Policy at the  Distributed Object and Components Security Workshop (DOCsec2002), Baltimore/USA.
Mar On March 12, 2002, Ulrich Lang gave a seminar talk about Middleware Security - Current Research and Future Work at the University of Cambridge Computer Laboratory.
Feb Ulrich Lang's and Rudolf Schreiner's book Developing Secure Distributed Systems with CORBA was published (more...).
2001  
Dec In December 2001, Ulrich Lang presented a paper on Verifiable Identifiers in Middleware Security at ACSAC (Annual Computer Security Application Conference), which was co-authored by Ulrich Lang, Rudolf Schreiner, and Dieter Gollmann (Microsoft Research). 
Nov In November 2001, Ulrich Lang and Rudolf Schreiner, and Dieter Gollmann (Microsoft Resarch) co-submitted a paper on Cryptography and Middleware Security to ICICS2001 (Third International Conference on Information and Communications Security). It was presented by Ulrich Lang in Xi'an, China. It has also been published in Springer Lecture Notes in Computer Science (LNCS) 2229 (11/2001).
Nov In November 2001, Rudolf Schreiner gave a tutorial on middleware security at the Middleware 2001 conference in Heidelberg, Germany
Nov In August, 2001, Rudolf Schreiner and Ulrich Lang co-submitted a paper on CORBA as a Secure Platform for Mobile Applications, which was presented by Rudolf Schreiner at EURESCOM 3G Technologies and Applications 2001 .
Sep In February, 2001, Ulrich Lang and Rudolf Schreiner co-submitted a paper on MICOSec: An Open Source Implementation of the CORBA Security Services, which was presented at ISSE 2001 (Information Security Solutions Europe Conference) by Ulrich Lang.
May In January 2001 Rudolf Schreiner and Ulrich Lang co-submitted a paper on Eine Open-Source Implementierung der CORBA Sicherheitsdienste (An OpenSource implementation of the CORBA Security Services), which was presented at the 7. Deutscher IT-Sicherheitskongress (7. German IT Security Conference) by Rudolf Schreiner.
Mar In March, 2001, Ulrich Lang gave a talk on MICOSec: CORBA Security Reality Check at the DOCsec2001 workshop in Annapolis, MD (USA).
2000  
Nov On November 27, 2000, Ulrich Lang gave a guest lecture on Security in Distributed Systems for the Computer Security (IS4) course in Information Security at Royal Holloway, University of London, covering 'What is CORBA?', 'Securing CORBA Applications', and 'The CORBASec Specification '
Nov On November 7, 2000, Ulrich Lang submitted a paper on Security Attributes in CORBA and gave a seminar talk on the same topic at the University of Cambridge Computer Laboratory.
Jun In June, 2000, Rudolf Schreiner and Ulrich Lang co-wrote a paper on The Challenges of CORBA Security which will be presented at workshop "Sicherheit in Mediendaten" and published with Springer .
Apr In April, 2000, Ulrich Lang gave a talk on CORBA Security in a Telecommunications Environment at the DOCsec2000 workshop in Boston (MA)
Feb In February, 2000, Ulrich Lang and Rudolf Schreiner published a paper on Flexibility and Interoperability in CORBA Security in 'Electronic Notes in Theoretical Computer Science' (Elsevier).
1999  
Dec On December 15, 1999, Ulrich Lang gave a talk on CORBA security for a large telecommunications provider
Dec On December 6, 1999, I gave a guest lecture on Security in Distributed Systems for the Computer Security (IS4) course in Information Security at Royal Holloway, University of London, covering 'What is CORBA?', 'CORBA Security Architecture', and 'CORBA in Practice'
Dec On December 1, 1999, I gave a talk on Why CORBA Security (Still) Fails at the DERA Security Workshop 1999 
Aug In August '99, Ulrich Lang's paper on CORBA Security on the Web  was published in Future Generation Computer Systems, Special Issue: Security on the Web (Elsevier).
Jul In July, 1999, Ulrich Lang gave talk on CORBA Security in a Large Banking Environment at the DOCsec'99 workshop in Baltimore
Mar After his first year at the University of Cambridge, Ulrich Lang submitted his PhD Thesis Proposal and a First Year Report.
Feb On February 25, 1999, Ulrich Lang gave a talk on Distributed Access Control at DERA (Malvern).
1998  
Dec On December 3, 1998, Ulrich Lang gave a talk on The Current State of CORBA Security Implementations at the DERA Security Workshop 1998.
Nov On November 30, 1998, Ulrich Lang gave a guest lecture on Security in Distributed Systems for the Computer Security (IS4) course in Information Security at Royal Holloway, University of London
Oct A general overview of CORBA security which was published in the German computer magazine "iX" in October 1998: "Schutz und Trutz - Sicherheit in CORBA-Systemen" (Rudolf Schreiner & Ulrich Lang).
Jul Ulrich Lang's first PhD publication was an article on Secure CORBA based Electronic Commerce Systems which was published in the Elsevier/Zergo Information Security Technical Report, Vol. 3, No 2.
Apr When Ulrich Lang started his Ph.D. at the Cambridge University Computer Laboratory, he gave a talk on CORBA, CORBA Security, and CORBA security in practice.
1997  
Sep As part of his M.Sc. in Information Security at Royal Holloway, University of London, Ulrich Lang wrote a dissertation on CORBA Security which describes CORBA, the CORBA Security Service Specification, and CORBA security in practice.

 

  Click here to ask us for any of these publications



      

Copyright (c) 2000-2008 ObjectSecurity - all rights reserved - copyright & terms of use - site map overview - webmaster