Sciweavers

HCSE
2010

The Secret Lives of Assumptions: Developing and Refining Assumption Personas for Secure System Design

13 years 2 months ago
The Secret Lives of Assumptions: Developing and Refining Assumption Personas for Secure System Design
Personas are useful for obtaining an empirically grounded understanding of a secure system's user population, its contexts of use, and possible vulnerabilities and threats endangering it. Often, however, personas need to be partly derived from assumptions; these may be embedded in a variety of different representations. Assumption Personas have been proposed as boundary objects for articulating assumptions about a user population, but no methods or tools currently exist for developing and refining these within the context of secure and usable design. This paper presents an approach for developing and refining assumption personas before and during the design of secure systems. We present a model for structuring the contribution of assumptions to assumption personas, together with a process for developing assumption personas founded on this model. We also present some preliminary results based on an application of this approach in a recent case study.
Shamal Faily, Ivan Flechais
Added 11 Feb 2011
Updated 11 Feb 2011
Type Journal
Year 2010
Where HCSE
Authors Shamal Faily, Ivan Flechais
Comments (0)