Second International Workshop on Governance, Risk and Compliance – Applications in Information Systems
In conjunction with CAiSE’09, Amsterdam, The Netherlands, 8-12th June, 2009
GRCIS’09 Call for Papers [PDF]
Governance, Risk and Compliance (GRC) are rapidly emerging challenges for enterprise systems designers. The significance of these topics has dramatically increased over the last few years as a result of numerous events that led to some of the largest scandals in corporate history. Compliance related software and services are expected to reach a market value of over $27billion this year. At the same time, facilitating compliant business process execution is increasingly complex due to the growing number of regulations, frequent and dynamic changes, as well as shared processes and services executing in highly decentralized environments.
In the age of outsourcing, dynamic business networks, and global commerce, it is inevitable that organizations will need to develop methods, tools and techniques to design, engineer, and assess processes and services that meet regulatory standards and contractual obligations. We expect Governance, Risk and Compliance to play a significant part in several applications, from transaction systems to management reporting infrastructures. GRC is emerging as a critical and challenging area of research and innovation. It introduces, among others, the need for new or adapted modeling approaches for compliance requirements, the extension of process and service modeling and execution frameworks for compliance and risk management, and the detection of policy violations.
This workshop will provide a forum for researchers from diverse backgrounds that contribute to this emerging area and will make a consolidated contribution in the form of new and extended methods that address the challenges of governance, risk and compliance in information systems. Topics covered by the workshop will include at least the following:
- Compliance and Risk Modeling
- Policy definition and enforcement
- Compliant service and process design
- Noncompliant process identification
- Risk management
- Visualization and simulation of risk in process models
- Governance processes
- Integration and effectuation of multiple regulatory standards
- Compliance, risk and tolerance metrics
- Organizational structures to support compliance
- Separation of duties/Separation of rights
- Decision tracing
- Data provenance and lineage
- Work tracking
- Violation detection
- Technologies for compliance assurance
- Applications, case studies and use cases
Submitted papers will be subjected to a double-blind review process and evaluated on the basis of significance, originality, technical quality, and exposition. Papers should clearly establish the research contribution, and relation to previous research. Position and survey papers are also welcome. The proceedings will be published as online CEUR Workshop Proceedings and the highest quality papers will be invited for a fast-track to the Journal of Database Management.Important Dates
Paper Submission February 23, 2009
Notification of acceptance March 23, 2009
Camera ready due April 1, 2009
Workshop June 8, 2009
Submission Details
Papers should be submitted in PDF format. The results described must be unpublished and must not be under review elsewhere. Submissions must conform to Springer’s LNCS format and should not exceed 15 pages, including all text, figures, references and appendices. Information about the Springer LNCS format can be found at www.springer.de/comp/lncs/authors.html. Three to five keywords characterizing the paper should be indicated at the end of the abstract. It is expected that at least one author of each accepted paper will register for and attend the workshop.
Papers should be submitted via the EasyChair submission system found at http://www.easychair.org/conferences/?conf=grcis09.
Co-Chairs
Dr Shazia Sadiq
School of Information Technology and Electrical Engineering
The University of Queensland
St Lucia QLD 4072
Brisbane, Australia
Dr Marta Indulska
UQ Business School
The University of Queensland
St Lucia QLD 4072
Brisbane, Australia
Dr Michael zur Muehlen
Howe School of Technology Management
Stevens Institute of Technology
Castle Point on Hudson
Hoboken, NJ 07030
Program Committee
Sami Bhiri, National University of Ireland
Wojciech Cellary, The Poznan University of Economics
G.R. Gangadharan, Telematica Institute
Aditya Ghose, University of Wollongong
Peter Green, The University of Queensland
Daniela Grigori, Université de Versailles St-Quentin en Yvelines
Guido Governatori, The University of Queensland
Stijn Hoppenbrouwers, University of Nijmegen
Regine Laleau, Université Paris 12-IUT
Zoran Milosevic, Deontik Pty Ltd
Michael Rosemann, Queensland University of Technology
Andreas Schaad, SAP Research Karlsruhe
Paolo Torroni, Università di Bologna
Jan Vanthienen, Katholieke Universiteit Leuven
Contact
Email: grcis@business.uq.edu.au