Fraud detection in process aware systems

F. Bezerra, Jacques Wainer
{"title":"Fraud detection in process aware systems","authors":"F. Bezerra, Jacques Wainer","doi":"10.1504/IJBPIM.2011.040204","DOIUrl":null,"url":null,"abstract":"In the last years, some large companies have been involved in scandals related to accounting and financial mismanagement, which represented a large financial damage to their stockholders. To recover the stock market confidence, certifications and manuals for best practices of governance were developed, and in some cases, harder federal laws were implemented (eg.: Sarbox, in USA). Companies adhered to these changes as a response to the market, deploying process aware information systems (PAS) and adopting the best practices of governance. On the other hand, companies demand a rapid response to strategic changes, so the adoption of normative PAS may compromise their competitiveness. That is, the companies need flexible PAS for competitiveness reasons; whereas, flexibility may compromise the security of the system because the users can execute tasks that characterize a fraudulent execution. In order to re-balance the trade-off between security and flexibility, we present in this work an anomaly detection algorithm for logs of PAS. We believe that the identification of anomalous events can help the adoption of flexible PAS without the loss of security properties.","PeriodicalId":35372,"journal":{"name":"International Journal of Business Process Integration and Management","volume":null,"pages":null},"PeriodicalIF":0.0000,"publicationDate":"2008-10-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"18","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"International Journal of Business Process Integration and Management","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1504/IJBPIM.2011.040204","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q4","JCRName":"Business, Management and Accounting","Score":null,"Total":0}
引用次数: 18

Abstract

In the last years, some large companies have been involved in scandals related to accounting and financial mismanagement, which represented a large financial damage to their stockholders. To recover the stock market confidence, certifications and manuals for best practices of governance were developed, and in some cases, harder federal laws were implemented (eg.: Sarbox, in USA). Companies adhered to these changes as a response to the market, deploying process aware information systems (PAS) and adopting the best practices of governance. On the other hand, companies demand a rapid response to strategic changes, so the adoption of normative PAS may compromise their competitiveness. That is, the companies need flexible PAS for competitiveness reasons; whereas, flexibility may compromise the security of the system because the users can execute tasks that characterize a fraudulent execution. In order to re-balance the trade-off between security and flexibility, we present in this work an anomaly detection algorithm for logs of PAS. We believe that the identification of anomalous events can help the adoption of flexible PAS without the loss of security properties.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
过程感知系统中的欺诈检测
在过去的几年里,一些大公司卷入了与会计和财务管理不善有关的丑闻,这对他们的股东造成了巨大的经济损失。为了恢复股票市场的信心,制定了最佳治理实践的认证和手册,在某些情况下,实施了更严格的联邦法律(例如。: Sarbox,在美国)。公司坚持将这些变化作为对市场的响应,部署流程感知信息系统(PAS)并采用治理的最佳实践。另一方面,公司要求对战略变化做出快速反应,因此采用规范的PAS可能会损害其竞争力。也就是说,企业为了竞争力需要灵活的PAS;然而,灵活性可能会损害系统的安全性,因为用户可以执行具有欺诈性执行特征的任务。为了重新平衡安全性和灵活性之间的权衡,我们在这项工作中提出了一种针对PAS日志的异常检测算法。我们认为,异常事件的识别可以帮助采用灵活的PAS而不损失安全特性。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
International Journal of Business Process Integration and Management
International Journal of Business Process Integration and Management Business, Management and Accounting-Business and International Management
CiteScore
0.70
自引率
0.00%
发文量
12
期刊介绍: Business processes have played an important role in enabling business application integration and collaboration across multiple organisations. The integration can be categorised into two types: internal integration and external integration. Internal integration includes all the integration aspects within one enterprise. Enterprise application integration (EAI) is a typical example of internal integration. External integration covers all the possible integration patterns across multiple enterprises. The typical business process based external application integration includes business process to application integration (BP2Ai) and business process to business process integration (BP2BPi).
期刊最新文献
Factors causing employees to resign from foreign oil company in China National Oil Offshore Corporation South East Sumatra (CNOOC SES Ltd.) Critical analysis of factors impacting trust and opportunism in agri-food supply chains: the case of tomatoes in the Northern Tanzania Comparison of job satisfaction between staff and labour in steel industry of Northern India – an empirical investigation A component abstraction for business processes Business process families using model-driven techniques
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1