Saved in:
Bibliographic Details
Main Authors: Naro, Daniel, Delgado, Jaime, Llorente, Silvia, Palomo, Amanda
Format: Preprint
Published: 2025
Subjects:
Online Access:https://arxiv.org/abs/2501.03067
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866916552586035200
author Naro, Daniel
Delgado, Jaime
Llorente, Silvia
Palomo, Amanda
author_facet Naro, Daniel
Delgado, Jaime
Llorente, Silvia
Palomo, Amanda
contents When developing devices, architectures and services for the Internet of Medical Things (IoMT) world, manufacturers or integrators must be aware of the security requirements expressed by both laws and specifications. To provide tools guiding through these requirements and to assure a third party of the correct compliance, an ontology charting the relevant laws and specifications (for the European context) is very useful. We here address the development of this ontology. Due to the very high number and size of the considered specification documents, we have put in place a methodology and tools to simplify the transition from natural text to an ontology. The first step is a manual highlighting of relevant concepts in the corpus, then a manual translation to XML/XSD is operated. We have developed a tool allowing us to convert this semi-structured data into an ontology. Because the different specifications use similar but different wording, our approach favors the creation of similar instances in the ontology. To improve the ontology simplification through instance merging, we consider the use of LLMs. The responses of the LLMs are compared against our manually defined correct responses. The quality of the responses of the automated system does not prove to be good enough to be trusted blindly, and should only be used as a starting point for a manual correction.
format Preprint
id arxiv_https___arxiv_org_abs_2501_03067
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle Design and implementation of tools to build an ontology of Security Requirements for Internet of Medical Things
Naro, Daniel
Delgado, Jaime
Llorente, Silvia
Palomo, Amanda
Cryptography and Security
When developing devices, architectures and services for the Internet of Medical Things (IoMT) world, manufacturers or integrators must be aware of the security requirements expressed by both laws and specifications. To provide tools guiding through these requirements and to assure a third party of the correct compliance, an ontology charting the relevant laws and specifications (for the European context) is very useful. We here address the development of this ontology. Due to the very high number and size of the considered specification documents, we have put in place a methodology and tools to simplify the transition from natural text to an ontology. The first step is a manual highlighting of relevant concepts in the corpus, then a manual translation to XML/XSD is operated. We have developed a tool allowing us to convert this semi-structured data into an ontology. Because the different specifications use similar but different wording, our approach favors the creation of similar instances in the ontology. To improve the ontology simplification through instance merging, we consider the use of LLMs. The responses of the LLMs are compared against our manually defined correct responses. The quality of the responses of the automated system does not prove to be good enough to be trusted blindly, and should only be used as a starting point for a manual correction.
title Design and implementation of tools to build an ontology of Security Requirements for Internet of Medical Things
topic Cryptography and Security
url https://arxiv.org/abs/2501.03067