Using Model-Based Engineering and Architectural Models to Build Secure Systems

SEI Report
In this paper, the authors present analytical techniques to model and validate security protocols for enforcing confidentiality and integrity.
Publisher

Software Engineering Institute

Abstract

A system designer faces several challenges when specifying security for distributed computing environments or migrating systems to a new execution platform. Business stakeholders impose constraints due to cost, time-to- market requirements, productivity impact, customer satisfaction concerns, and the like. And users exercise power at the desktop over computing resources and data availability. So, a system designer needs to understand requirements regarding protected resources (e.g., data), confidentiality, and integrity. And, a designer needs to predict the effect that security measures will have on other runtime quality attributes such as resource consumption, availability, and real-time performance.

Cite This SEI Report

Feiler, P., Hansson, J., & Morley, J. (2008, May 1). Using Model-Based Engineering and Architectural Models to Build Secure Systems. Retrieved August 18, 2026, from https://www.sei.cmu.edu/library/using-model-based-engineering-and-architectural-models-to-build-secure-systems/.

@techreport{feiler_2008,
author={Feiler, Peter and Hansson, Jörgen and Morley, John},
title={Using Model-Based Engineering and Architectural Models to Build Secure Systems},
month={May},
year={2008},
institution={Software Engineering Institute, Carnegie Mellon University},
url={https://www.sei.cmu.edu/library/using-model-based-engineering-and-architectural-models-to-build-secure-systems/},
note={Accessed: 2026-Aug-18}
}

Feiler, Peter, Jörgen Hansson, and John Morley. "Using Model-Based Engineering and Architectural Models to Build Secure Systems." Software Engineering Institute, Carnegie Mellon University. Software Engineering Institute, May 1, 2008. https://www.sei.cmu.edu/library/using-model-based-engineering-and-architectural-models-to-build-secure-systems/.

P. Feiler, J. Hansson, and J. Morley, "Using Model-Based Engineering and Architectural Models to Build Secure Systems," Software Engineering Institute, Carnegie Mellon University. Software Engineering Institute, 1-May-2008 [Online]. Available: https://www.sei.cmu.edu/library/using-model-based-engineering-and-architectural-models-to-build-secure-systems/. [Accessed: 18-Aug-2026].

Feiler, Peter, Jörgen Hansson, and John Morley. "Using Model-Based Engineering and Architectural Models to Build Secure Systems." Software Engineering Institute, Carnegie Mellon University, Software Engineering Institute, 1 May. 2008. https://www.sei.cmu.edu/library/using-model-based-engineering-and-architectural-models-to-build-secure-systems/. Accessed 18 Aug. 2026.

Feiler, Peter; Hansson, Jörgen; & Morley, John. Using Model-Based Engineering and Architectural Models to Build Secure Systems. Software Engineering Institute. 2008. https://www.sei.cmu.edu/library/using-model-based-engineering-and-architectural-models-to-build-secure-systems/