Authors:
            
                    Katarzyna Mazur
                    
                        
                                1
                            
                    
                    ; 
                
                    Bogdan Ksiezopolski
                    
                        
                                2
                            
                    
                     and
                
                    Adam Wierzbicki
                    
                        
                                3
                            
                    
                    
                
        
        
            Affiliations:
            
                    
                        
                                1
                            
                    
                    Maria Curie-Sklodowska University, Poland
                
                    ; 
                
                    
                        
                                2
                            
                    
                    Maria Curie-Sklodowska University  and Polish-japanese Academy of Information Technology, Poland
                
                    ; 
                
                    
                        
                                3
                            
                    
                    Polish-japanese Academy of Information Technology, Poland
                
        
        
        
        
        
             Keyword(s):
            Security Modelling, Model-driven Engineering, Model-driven Security, Quality Of Protection, Security Engineering, Access Control Management, RBAC.
        
        
            
                Related
                    Ontology
                    Subjects/Areas/Topics:
                
                        Communication and Software Technologies and Architectures
                    ; 
                        Computer-Supported Education
                    ; 
                        e-Business
                    ; 
                        Energy and Economy
                    ; 
                        Enterprise Information Systems
                    ; 
                        Information Systems Analysis and Specification
                    ; 
                        Information Technologies Supporting Learning
                    ; 
                        Mobile and Pervasive Computing
                    ; 
                        Model Driven Architectures and Engineering
                    ; 
                        Requirements Analysis And Management
                    ; 
                        Security and Privacy
                    ; 
                        Sustainable Computing and Communications
                    ; 
                        Telecommunications
                    ; 
                        Tools, Techniques and Methodologies for System Development
                    
            
        
        
            
                Abstract: 
                To facilitate the management of permissions in complex secure systems, the concept of reference models for
role-based access control (RBAC) has been proposed. However, among many existing RBAC analyses and
implementations, there still exists the lack of the evaluation of its impact on the overall system performance. In
this paper, to reduce this deficiency, we introduce an initial approach towards estimation of the influence of the
most common access control mechanism on the system efficiency. Modelling RBAC in Quality of Protection
Modelling Language (QoP-ML), we analyse a real enterprise business scenario and report obtained results,
focusing on time and resource consumption.