<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Archiving and Interchange DTD v1.0 20120330//EN" "JATS-archivearticle1.dtd">
<article xmlns:xlink="http://www.w3.org/1999/xlink">
  <front>
    <journal-meta />
    <article-meta>
      <title-group>
        <article-title>Leveraging Human-Computer Cloud Architecture for Business Trip Resilience</article-title>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <string-name>r Smirnov</string-name>
          <email>smir@iias.spb.su</email>
          <xref ref-type="aff" rid="aff0">0</xref>
        </contrib>
        <contrib contrib-type="author">
          <string-name>w Ponom</string-name>
          <email>ponomarev@iias.spb.su</email>
          <xref ref-type="aff" rid="aff0">0</xref>
        </contrib>
        <aff id="aff0">
          <label>0</label>
          <institution>St.Petersburg Institute for Informatics and Automation of the RAS</institution>
          ,
          <addr-line>St.Petersburg, 14</addr-line>
        </aff>
      </contrib-group>
      <fpage>45</fpage>
      <lpage>56</lpage>
      <abstract>
        <p>During business trips company employees being in a dynamic, unfamiliar environment are exposed to various threats (both to well-being, and to effectiveness in performing their business responsibilities), therefore, business trip risk management is one of the integral parts of the overall business process resilience. This paper proposes an approach of leveraging a novel humancomputer cloud concept to perform some of typical tasks required to implement organization's travel risk management policy. In particular, it is proposed to use human-based application deployed in human-computer cloud (1) to assist in pre-trip investigation required to assess travel risks and develop trip instructions, (2) to support travelling employees in case of unexpected incidents.</p>
      </abstract>
      <kwd-group>
        <kwd>Human-Computer Cloud</kwd>
        <kwd>Crowdsourcing</kwd>
        <kwd>Travel Risk Management</kwd>
        <kwd>Human-in-the-Loop</kwd>
        <kwd>Human Factors</kwd>
      </kwd-group>
    </article-meta>
  </front>
  <body>
    <sec id="sec-1">
      <title>-</title>
      <p>
        Business process resilience is generally defined as the ability to adjust easily to
change (caused by economic factors, natural disasters, government decisions etc.) [
        <xref ref-type="bibr" rid="ref1">1</xref>
        ].
For organizations whose business processes significantly rely on business trips of
their employees, business trip resilience and business trip risk management are
important parts of a holistic approach to business process resilience [
        <xref ref-type="bibr" rid="ref2">2</xref>
        ]. It means that an
organization should be able to react to any changes in the environment (possibly in
countries/regions where there even no regular offices of that organization) that may
influence well-being of the employees and their effectiveness in performing business
responsibilities.
      </p>
      <p>
        Increasing importance of this problem is supported by various analytical reports.
E.g., according to Ipsos MORI Global Business Resilience Trends Watch 2018, 63%
of business decision-makers perceive travel risks to have increased in 2017. At the
same time, only 9% of organizations updated their sustainability program to include
travel risk policy [
        <xref ref-type="bibr" rid="ref3">3</xref>
        ].
      </p>
      <p>
        This paper proposes an approach to address some of the business resilience
problems (specifically, business trip resilience) that is based on human-computer cloud
(HCC) concept. The key of reaching resilience is identification of influences and
quickly adapting to them. In the technological sense, one important perspective of
changes is availability of computing infrastructure and variation of computing
resource utilization (that can be caused by different external factors). These changes can
be addressed with a help of conventional cloud computing technology, which
provides means to elastically manage the computing capacity consumed by business
processes [
        <xref ref-type="bibr" rid="ref4">4</xref>
        ] and various redundancy schemes allowing to minimize negative effects
of hardware outage. However, there is much more in business resilience than flexible
computational resource scaling in response to the environment. Another significant
aspect of adaptability and resilience is human resource capacity limitations, which
may in some situations restrict the possible profit (e.g., may simply lack required
human resources to quickly react to some change in the environment and make profit
of it).
      </p>
      <p>
        In the previous work, the authors developed the original architecture of
humancomputer cloud [
        <xref ref-type="bibr" rid="ref5 ref6 ref7">5–7</xref>
        ] that (similarly to conventional cloud environments) allows to
decouple application logics from resource management issues. However, unlike
conventional clouds, HCC treats human contributors as a special kind of resource and
supports the execution of human-based applications. Earlier research has also shown
that there are multiple applications of human-computer cloud paradigm in e-tourism
[
        <xref ref-type="bibr" rid="ref5 ref7">5, 7</xref>
        ]. This paper adapts earlier proposed solutions to the problem of employee
travel/security risk management.
      </p>
      <p>
        Crowdsourcing is usually defined as a way of outsourcing, where tasks
traditionally performed by company’s employees or other companies are forwarded to members
of an undefined large group of people (called “crowd”) by means of internet (e.g.,
[810]). In this sense, HCC provides technological means for crowdsourcing. An
important question regarding to using crowd for solving some tasks is “what are the
factors that influence the decision of whether it is possible to use crowdsourcing and
crowd computing to perform some part(s) of the company’s business process?”
Though business process crowdsourcing (originally introduced by Vecchia and
Cisternino [
        <xref ref-type="bibr" rid="ref11">11</xref>
        ] as a model allowing organizations to crowdsource their internal
business processes) has already been paid some attention, it is still at an early stage of
development [
        <xref ref-type="bibr" rid="ref12">12</xref>
        ]. It was recognised by the scientific community that making a
decision whether to crowdsource or not requires a comprehensive analysis in which
multiple factors should be examined in a systematic way [
        <xref ref-type="bibr" rid="ref13">13</xref>
        ]. By examining the
characteristics of crowdsourcing in practice, Schenk and Guittard [
        <xref ref-type="bibr" rid="ref8">8</xref>
        ] have stressed task
complexity as the first important dimension.
      </p>
      <p>Taking into account limitations of crowdsourcing applicability (e.g., requirement
of some specific expertise, sensitive data processing) and factors influencing the
possibility of crowdsourcing, first, a set of particular tasks of travel risk management that
were implemented as human-based applications was mostly limited to
informationcollection tasks, second, the private-public human-computer cloud approach was
proposed.</p>
      <p>
        The proposed approach touches Risk monitoring (RMON) and Risk assessment
(RA) process areas of Travel Risk Management Maturity Model (TRM3) [
        <xref ref-type="bibr" rid="ref14">14</xref>
        ]
developed by Global Business Travel Association (GBTA) partnered with iJET Intelligent
Risk Systems. Specifically, the proposed solution will help to reach Level 3 according
to this maturity model in the process area of Risk monitoring.
      </p>
      <p>The rest of the paper is structured as follows. Section 2 contains some basic
information about human-computer cloud concept and an approach to implementing it.
Section 3 introduces the hybrid human-computer cloud environment that allows to
partially sidestep pitfalls of crowdsourcing applicability by creating private cloud
(connected with a public one). Section 4 discusses some of the trip management tasks
that can be implemented on top of the cloud.
2</p>
    </sec>
    <sec id="sec-2">
      <title>Human-Computer Cloud</title>
      <p>
        This section briefly describes HCC concept in its historical evolution and the
particular approach to implementation of this concept taken by the authors. While this
section should be enough to get most ideas behind the proposed platform, more details
can be found in previous publications [
        <xref ref-type="bibr" rid="ref5 ref6 ref7">5–7</xref>
        ].
      </p>
      <p>
        Although, typical capabilities provided by cloud are storage, processing,
networking and software, cloud computing recently is perceived as a more general concept
resulting to various attempts of applying elastic on-demand resource management
principles (sometimes called XaaS or *aaS). This includes several developments
where human information processing abilities were treated and provided in a
cloudlike way. One example of this kind of systems was described in [
        <xref ref-type="bibr" rid="ref15">15</xref>
        ], where a cloud
architecture for mobile crowdsensing MCSaaS (Mobile CrowdSensing as a Service)
was proposed. MCSaaS defined a unified interface allowing any smartphone user to
become a part of a cloud and allow to use his/her smartphone sensors in some way
that he/she finds acceptable in exchange for some monetary reward or even voluntary.
Other examples are ClouT (Cloud+IoT) project [
        <xref ref-type="bibr" rid="ref16">16</xref>
        ] aimed on providing enhanced
solutions for smart cities by using cloud computing in the IoT domain. While
mentioned projects involve humans mostly as owners of mobile sensing infrastructure
(able to activate a sensor and collect some data), there are also projects aimed on
abstracting human processing capabilities. E.g., in [
        <xref ref-type="bibr" rid="ref17">17</xref>
        ] and [
        <xref ref-type="bibr" rid="ref18">18</xref>
        ] the cloud consisting of
human-based services provided by human computing units is discussed. Further, a
concept of social computing unit is also introduced representing several “human
computing units” working together on one problem.
      </p>
      <p>While in our work we adopt the ideas of the cited publications, namely, using
cloud-inspired resource management approach for human-based applications, we
extend it by two distinguishing features. That are ontologies and digital contracts.
Ontological mechanisms (ability to precisely define semantics and use inference to
find related terms) are used to find and allocate human resources required by software
services. While digital contracts are used to achieve predictability required by cloud
users (application developers). These digital contracts specify terms on which a
conm
r
o
f
t
laP Information Storage &amp;</p>
      <p>Exchange Services</p>
      <sec id="sec-2-1">
        <title>Data</title>
        <p>Processing
Services
Human
Workflow Services
s
e
i
g
o
l
o
t
n
O</p>
      </sec>
      <sec id="sec-2-2">
        <title>Application Services</title>
      </sec>
      <sec id="sec-2-3">
        <title>Dynamic workflow service</title>
      </sec>
      <sec id="sec-2-4">
        <title>Deployment service</title>
      </sec>
      <sec id="sec-2-5">
        <title>Infrastructure Management</title>
      </sec>
      <sec id="sec-2-6">
        <title>Ontology-based resource discovery</title>
      </sec>
      <sec id="sec-2-7">
        <title>Resource Virtualization</title>
      </sec>
      <sec id="sec-2-8">
        <title>Computing/Storage</title>
      </sec>
      <sec id="sec-2-9">
        <title>Sensing</title>
      </sec>
      <sec id="sec-2-10">
        <title>Human</title>
        <p>tributor agrees to provide his/her competencies to the cloud application developer,
rewarding and possible penalties. Cloud environment uses these contracts both to
allocate service’s task and to inform users about possible capacity.
2.1</p>
        <sec id="sec-2-10-1">
          <title>Actors</title>
          <p>
            Although NIST recommendation document [
            <xref ref-type="bibr" rid="ref4">4</xref>
            ] identifies five types of actors, this
paper adopts two most important of them (i.e., Cloud Consumer and Cloud Provider)
and adds one new specific actor for humans who provide their resources via cloud
environment. Therefore, following actors are identified:
          </p>
          <p>Cloud consumers, who use the applications and services deployed in the cloud
environment (and provided by Cloud providers). Further, this category of actors can
be divided into End users and Service developers. This division is mostly determined
by the kind (and a level) of services a consumer deals with. For example, when using
the cloud for business trip resilience, possible end users are traveling employees or
business trip managers, because they use cloud services (mostly, on the SaaS layer) to
solve domain specific tasks. Service developers use the services of the platform layer
to create application services for end users.</p>
          <p>Contributors, i.e., citizens, who are available to serve as human resources in a
HCC environment.</p>
          <p>Cloud providers, individuals or organization who own and maintain the required
hardware and software infrastructure provided to Cloud Consumers. This includes, for
example, system administrators.
2.2</p>
        </sec>
        <sec id="sec-2-10-2">
          <title>Cloud Layers and Services</title>
          <p>All the three models of cloud computing (IaaS, PaaS, SaaS) can be adapted to include
human resources (Fig. 1).</p>
          <p>Infrastructure layer: Infrastructure layer unifies different types of capabilities:
traditional computing and storage capabilities, sensing capabilities and human
expertise capabilities. Contributors can join HCC and define the resources they can
provide, time and load restrictions, a type of tasks they may participate. In the
infrastructure layer resources (including human resources, or contributors) are not locked to
some particular domain. Instead, they describe their competencies and possible kinds
of activities using some of the available ontologies to leverage the resource
identification phase that happens when some application that require human participation is
deployed in the cloud environment. Ontology-based resource discovery service
performs ontology search involving ontology matching techniques as necessary.
Infrastructure layer management monitors contributor connections and disconnections,
collects information about effectiveness of each contributor (separately for each skill
a contributor is allocated by) and uses it in further allocation requests.</p>
          <p>Platform layer: This layer consists of a set of multi-purpose utility services that
can be leveraged for building applications relying on human expertise, and
development tools, that are used to deploy and run human-in-the-loop services in the cloud
environment.</p>
          <p>Development tools of the platform layer allow to deploy services in cloud
environment and to monitor them. Each service being deployed includes an
ontologybased descriptor, specifying:
- building/configuration instructions;
- hardware and software requirements of the service (what platform services it
relies on, e.g., database service, human workflow service, etc.);</p>
          <p>- human resource requirements (if any), specifying what human skills and
competencies this service need to function. These requirements are also resolved during the
service deployment, but as (1) resolving these requirements employs ontology
matching which may result in some tradeoffs, (2) human resources are much more limited
than hardware/software, the status and details of the requirements resolution are
available to the developer and can be browsed via the management console;
- description of the service functions and entry points to be published in the
application domain service repository and used by the ad hoc dynamic workflow service.</p>
          <p>Typical interoperability scenario that is initiated in the platform layer during
deployment is the following: the human resources connected to the cloud environment
describe their capabilities using some problem-specific dictionaries. Each
application/service that is deployed in this cloud environment contains a description of its
requirements (including the requirements to the resources), which is expressed in
terms of the most appropriate ontology selected (or even designed) by the application
developers. It is very unlikely that human resources have used this exact ontology to
describe their capabilities when connecting to the system. However, the advantage in
using ontologies here is that due to the formal semantics inherent to them different
ontologies can be matched. Hence, in the process of service deployment, human
resources that are potentially able to fulfill the human requirements of the service are
identified (despite the fact that they are not described initially in terms of the
application ontology). Later, during the functioning of the service, the participants’
description can evolve, because his/her performance in the capabilities required by the
service (and expressed in terms of service’s ontology) is recorded and processed. For
each further service that is deployed in this environment, the process of aligning
requirements with the capabilities of human resources becomes easier, as human
resources definition becomes more and more detailed.</p>
          <p>
            Software layer: This layer consists of a suite of (potentially human-based)
services and applications designed for a particular problem area. E.g., in the area of
tourism there are various services like itinerary planning, feedback collection and many
others [
            <xref ref-type="bibr" rid="ref19 ref5">5, 19</xref>
            ].
3
          </p>
        </sec>
      </sec>
    </sec>
    <sec id="sec-3">
      <title>Hybrid Human-Computer Cloud for Decision Support</title>
      <p>Conceptual schema of the proposed approach is presented in Fig. 2. The proposed
cloud-based decision support is aimed at the decision points of workflows, which are
formalised and ready for implementation representations of business processes.</p>
      <p>Due to privacy issues and possible presence of sensitive information, usage of
external human resources (i.e., crowdsourcing as one of the cloud resources) may be
limited. However, it doesn’t apply to the internal human resources of the organization.
Therefore, decision support cloud follows the so-called hybrid cloud model, were all
the resources are divided between private (on-premise) cloud and public (external)
cloud. In case of traditional computing resources, directly accessible private cloud
reduces time and latency compared to access to public resources, besides, private
cloud may cover average workload, retaining the ability to use public resources, when
it is needed. Hybrid HCC inherits all those features, but has one more. Private cloud
contains a pool of unique human resources that can be used with much less
restrictions then those from the outside. Uniqueness of these resources is due to the fact
that members of the private cloud are actually employees of the organization with all
legal and practical consequences, e.g., they are enforced to obey non-disclosure
agreement, and they may be more familiar with the context of each particular task. It
puts human resource scheduler of the private cloud very close to the workflow engine
(e.g., BPEL- or BPMN-based), but modelling all the human resources (private and
public) as cloud resources allows to build a unified scheduler. I.e., a single scheduler
‘faced’ with some request that contains a sensitive data may allocate resources from
the private cloud, but ‘faced’ with some request that doesn’t contain sensitive data
may automatically allocate resources from public cloud, automatically resorting to
‘crowdsourcing’. This is only possible if resources of the both clouds are described in
the same form and provide aligned APIs.</p>
      <sec id="sec-3-1">
        <title>Public human-computer cloud</title>
        <p>Services and resources
(including crowd)</p>
      </sec>
      <sec id="sec-3-2">
        <title>Business</title>
        <p>process</p>
      </sec>
      <sec id="sec-3-3">
        <title>Workflow</title>
      </sec>
      <sec id="sec-3-4">
        <title>Decision maker</title>
      </sec>
      <sec id="sec-3-5">
        <title>Organization boundary</title>
        <p>Private
humancomputer cloud
Decision support software
Human &amp; computer
resources
The decision support assumes delegation of tasks to a cloud consisting of both (a) IT
tools, which can provide information for decision support (decision support systems),
provide recommendations (recommendation systems) or even do some decision
making (expert systems); and (b) company (and outer) experts, who can either assist in
decision making or make the required decisions. Therefore, all the three cloud layers
are present in the architecture. Infrastructure-as-a-Service (IaaS) layer is formed by
computing, storage and human resources, that can be used in the process of decision
support. Platform-as-a-Service (PaaS) layer is not explicitly depicted in the Fig. 1, but
it is formed by the intermediary services allowing to build end-user applications.
Finally, the Software-as-a-Service (SaaS) layer that is represented by different forms of
decision support software.
4</p>
      </sec>
    </sec>
    <sec id="sec-4">
      <title>Business Trip Risk Management</title>
      <p>This section describes the way human-computer cloud capabilities are utilized for
business trip risk management. It analyses some recommended practices for managing
business trip risks and shows how these practices can be implemented on the basis of
hybrid human-computer cloud.
4.1</p>
      <sec id="sec-4-1">
        <title>Business Process</title>
        <p>
          GBTA Europe Risk Committee has recently identified five pillars of travel risk
management [
          <xref ref-type="bibr" rid="ref20">20</xref>
          ]:
1. A business travel health, safety and security policy. Most companies already have a
safety and security policy in place, but every company needs a specific set of
policies around business travel.
2. Travel safety and security information. Companies must base their advice off of
reliable travel information, both of which should be relayed to travelers before they
embark on a trip.
3. Restrictions on travel to higher risk countries. You must have a plan for controlling
travel to high-risk countries. Companies may define high-risk differently based on
their corporate risk appetite.
4. Knowing where your people are. In the case of a safety, security or health incident,
you must be able to reach out to your travelers to ensure their safety and offer
support.
5. An incident and crisis management plan for when things go wrong.
The Ipsos Report [
          <xref ref-type="bibr" rid="ref3">3</xref>
          ] also confirms that many companies have recently undertaken
some steps that go well with the activity areas above:
 Introduced pre-trip and during trip advisory emails (39%).
 Included travel risk assessment in travel approval process (37%).
 Implemented travel safety training and security training (33%).
 Provided annual health check-up’s (32%).
 Updated travel risk policy (excluding diversity related issues) (31%).
To build effective policies around business travel (task 1), prepare safety and security
instructions (task 2) as well as an incident and crisis management plans (task 5) the
organization (represented by a responsible role) has to have reliable, complete and
upto-date information about possible threats. The proposed roles of HCC-based
applications are primarily concentrated around collecting such information from local experts
and recent travelers to the destination. On the other hand, Travel Risk Management
Maturity Model specifies several activities and processes (e.g. Risk monitoring) that
must be done in the recurring basis and also require access to actual information about
business trip destination.
        </p>
        <p>Besides, in case something unexpected happens while an employee is on the trip,
he/she might need information support accounting for the new situation. And that may
also be simpler for persons with local knowledge. Therefore, there are basically two
scenarios human-based information collection applications are used in business trip
management: pre-trip risk assessment and on-trip support.</p>
      </sec>
      <sec id="sec-4-2">
        <title>Pre-trip risk assessment</title>
        <p>Basic workflow of risk information collection is performed by a travel risk
manager role who is in charge of what kind of information has to be collected to prepare
people to business trips and make them safe. In some sense, this role is responsible for
resilience in business process of business trip organization. However, in a company
that has an intense (or significantly varying) business trip schedule it might be hard to
collect all the needed information. On the other hand, this particular information can
be collected by local people/agencies. So, the travel risk manager submits the required
information to the travel information collection application, these requests are
directed to contributors with local expertise who provide the required information.</p>
        <p>Collect
longterm local
information
Collect
shortterm local
information
Store
information for
future uses</p>
        <p>Web, State foreign
department
recom</p>
        <p>mendations etc.</p>
        <p>Real-time queries to
people with local</p>
        <p>expertise</p>
        <p>Travel risk
knowledge base
Simplified workflow of pre-trip risk assessment investigation is shown in Fig. 3.
When assessing risks of business trip to some new location, travel risk manager
collects both long-term information about the destination, as well as short-term
information. This information is stored into Travel risk knowledge base so that (1) in the
subsequent travels to the same destination pre-trip risk evaluation might reuse large
portions of it (depending on the time passed from the collection and classification of
the information), (2) this knowledge base is used to send information emails to the
employees before the trip and even in the trip. Potentially, in case of working
employee travel tracking system, the knowledge base may be also used for online alerts
and on-trip information support, however, this is out of scope of this paper.</p>
        <p>This workflow sidesteps the specific content of the information that need to be
collected. In fact, the particular list of the information items (or, trip preparation
checklist) as well as classification into “long-term” and “short-term” information items is a
part of travel risk assessment methodology developed in the particular organization as
a result of another process.</p>
      </sec>
      <sec id="sec-4-3">
        <title>On-trip support</title>
        <p>This scenario is activated while an employee is on the trip. However, there are two
possible initiators of it. The first one is travel risk manager who monitors general
news stream about locations where company employees are currently on the business
trip and decides if the situation is changed severely enough that general instructions
about the destination might have become obsolete. In this case, travel risk manager
initiates a new information collection cycle resulting in the information emails to the
employees about new safety and security instruction in the changed situation.</p>
        <p>However, in some cases a travelling employee might face problems that while are
not objectively so significant to be reflected in a news stream, nevertheless create
serious threat for efficiency. In this case, an employee may directly access to local
experts who can provide the required information.
4.2</p>
      </sec>
      <sec id="sec-4-4">
        <title>Implementation with the Human-Computer Cloud</title>
        <p>The simplest way to implement these scenarios with the help of HCC is to implement
a set of human-based applications (leveraging the intellectual abilities of contributors
working with the cloud) and deploy them in the cloud environment. Development of
human-based applications is possible with the toolset provided by the PaaS layer of
the platform. Due to current limitations of the platform, there applications can only be
web applications exposing RESTful API. Therefore, software part of the travel risk
management workspace has to consist of a desktop (or web) application (possibly
integrated with other enterprise software) providing user interface and human-based
application deployed in the HCC. These two applications communicate over HTTP
via RESTful interface (Fig. 4). This figure shows a simplified case, when there is no
private cloud part and travel risk manager workplace application directly connects to
the public Travel information collection application. In a more elaborate case suitable
for bigger organizations able to deploy own computing infrastructure and ready to
deploy private cloud, the schema transforms roughly to what is shown in Fig. 2, i.e.
travel risk manager workplace connects to the application deployed in the private
cloud, and if the application fails to collect needed information among private cloud
contributors, the request is passed forward to the public cloud.</p>
        <p>Human-based application deployed in the cloud requires a deployment descriptor
defining resource requirements of the application and digital contract templates.</p>
        <p>During the deployment of this travel risk collection application the ontology
concepts used for description will be matched to the resource description profiles and
notifications of contribution possibility (called advertisements in the terminology of
the platform) will be sent out to respective contributors.
Travel
risk
manager</p>
        <p>Enterprise software</p>
        <sec id="sec-4-4-1">
          <title>Travel risk management workplace</title>
          <p>RESTful</p>
          <p>API
Contributors</p>
        </sec>
        <sec id="sec-4-4-2">
          <title>Travel information collection</title>
          <p>Human-computer cloud
The paper proposes to use elements of crowdsourcing (implemented via a novel
concept of human-computer cloud) for information collection activities in the scope of
business trip risk management. The approach suggests to route information collection
requests issued by organization’s business trip risk manager to local experts whose
work for HCC environment is regulated by digital contracts (which allows to reach
predictability in resource availability and response time). A hybridization
(private/public) of human-computer cloud was proposed that allows to sidestep some of
the pitfalls of external execution of inner organization tasks.</p>
          <p>The proposed approach goes very well with will Travel Risk Management
Maturity Model and may facilitate reaching Level 3 (Proactive) according to this model by
an organisation.</p>
          <p>Acknowledgements. The research is funded by the Russian Science Foundation
(project # 16-11-10253).</p>
        </sec>
      </sec>
    </sec>
  </body>
  <back>
    <ref-list>
      <ref id="ref1">
        <mixed-citation>
          1. Proactive Strategies to Position and Protect Your Organisation, http://www.continuitycentral.com/feature055.htm,
          <source>last accessed</source>
          <year>2018</year>
          /05/15.
        </mixed-citation>
      </ref>
      <ref id="ref2">
        <mixed-citation>
          2.
          <string-name>
            <surname>Dolan</surname>
          </string-name>
          , R.:
          <article-title>Four Reasons Why Travel Risk Management is a Business Imperative</article-title>
          , https://www.concur.com/newsroom/article/four-reasons
          <article-title>-why-travel-risk-management-is-abusiness-imperative</article-title>
          ,
          <source>last accessed</source>
          <year>2018</year>
          /05/15.
        </mixed-citation>
      </ref>
      <ref id="ref3">
        <mixed-citation>
          3.
          <source>Ipsos MORI Global Business Resilience Trends Watch</source>
          <year>2018</year>
          , https://www.businesswire.com/news/home/20171114005920/en/Organisations-StridesPlanning
          <string-name>
            <surname>-Unknown-Risk-</surname>
          </string-name>
          Perception-Remains,
          <source>last accessed</source>
          <year>2018</year>
          /05/15.
        </mixed-citation>
      </ref>
      <ref id="ref4">
        <mixed-citation>
          4.
          <string-name>
            <surname>Mell</surname>
            ,
            <given-names>P.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Grance</surname>
            ,
            <given-names>T.</given-names>
          </string-name>
          :
          <article-title>The NIST Definition of Cloud Computing. Recommendations of the National Institute of Standards and Technology</article-title>
          ,
          <source>Special Publication 800-145</source>
          (
          <year>2011</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref5">
        <mixed-citation>
          5.
          <string-name>
            <surname>Smirnov</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Ponomarev</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Levashova</surname>
            ,
            <given-names>T.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Teslya</surname>
          </string-name>
          , N.:
          <article-title>Human-computer cloud for decision support in tourism: Approach and architecture</article-title>
          .
          <source>In: Proceedings of the 19th Conference of Open Innovations Association (FRUCT)</source>
          , pp.
          <fpage>226</fpage>
          -
          <lpage>235</lpage>
          (
          <year>2016</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref6">
        <mixed-citation>
          6.
          <string-name>
            <surname>Smirnov</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Ponomarev</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Levashova</surname>
            ,
            <given-names>T.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Shilov</surname>
          </string-name>
          , N.:
          <article-title>Ontology-based Cloud Platform for Human-driven Applications</article-title>
          .
          <source>Proceedings of the 21st Conference of Open Innovations Association FRUCT</source>
          , pp.
          <fpage>304</fpage>
          -
          <lpage>310</lpage>
          (
          <year>2017</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref7">
        <mixed-citation>
          7.
          <string-name>
            <surname>Smirnov</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Ponomarev</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Shilov</surname>
            ,
            <given-names>N.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Kashevnik</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Teslya</surname>
          </string-name>
          , N.:
          <article-title>Ontology-based human-computer cloud for decision support: Architecture and applications in tourism</article-title>
          .
          <source>Int. J. of Embedded and Real-Time Communication Systems</source>
          ,
          <volume>9</volume>
          (
          <issue>1</issue>
          ), pp.
          <fpage>1</fpage>
          -
          <lpage>19</lpage>
          (
          <year>2018</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref8">
        <mixed-citation>
          8.
          <string-name>
            <surname>Schenk</surname>
            ,
            <given-names>E.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Guittard</surname>
            ,
            <given-names>C.</given-names>
          </string-name>
          :
          <article-title>Towards a characterization of crowdsourcing practices</article-title>
          .
          <source>Journal of Innovation Economics</source>
          ,
          <volume>1</volume>
          , pp.
          <fpage>93</fpage>
          -
          <lpage>107</lpage>
          (
          <year>2011</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref9">
        <mixed-citation>
          9.
          <string-name>
            <surname>Howe</surname>
            ,
            <given-names>J.:</given-names>
          </string-name>
          <article-title>The rise of crowdsourcing</article-title>
          .
          <source>Wired magazine</source>
          , pp.
          <fpage>1</fpage>
          -
          <lpage>4</lpage>
          (
          <year>2006</year>
          )
        </mixed-citation>
      </ref>
      <ref id="ref10">
        <mixed-citation>
          10.
          <string-name>
            <surname>Howe</surname>
          </string-name>
          , J.: Crowdsourcing: A Definition. http://crowdsourcing.typepad.com/cs/
        </mixed-citation>
      </ref>
      <ref id="ref11">
        <mixed-citation>
          11.
          <string-name>
            <surname>Vecchia</surname>
          </string-name>
          , La G.,
          <string-name>
            <surname>Cisternino</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          :
          <article-title>Collaborative Workforce, Business Process Crowdsourcing as an Alternative of BPO</article-title>
          .
          <source>Current Trends in Web Engineering, 10th International Conference on Web Engineering ICWE 2010 Workshops, Revised Selected Papers, LNCS 6385</source>
          , pp.
          <fpage>425</fpage>
          -
          <lpage>430</lpage>
          . Springer (
          <year>2010</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref12">
        <mixed-citation>
          12.
          <string-name>
            <surname>Thuan</surname>
            ,
            <given-names>N. H.</given-names>
          </string-name>
          :
          <article-title>To Establish Crowdsourcing as an Organizational Business Process: An Exploratory Study</article-title>
          .
          <source>Phd Research Proposal</source>
          , School of Information Management, Victoria University of Wellington, New Zealand (
          <year>2013</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref13">
        <mixed-citation>
          13.
          <string-name>
            <surname>Zhao</surname>
            ,
            <given-names>Y.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Zhu</surname>
            ,
            <given-names>Q.</given-names>
          </string-name>
          :
          <article-title>Evaluation on Crowdsourcing Research: Current status and future direction</article-title>
          .
          <source>Information Systems Frontiers</source>
          , pp.
          <fpage>1</fpage>
          -
          <lpage>18</lpage>
          (
          <year>2012</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref14">
        <mixed-citation>
          14.
          <string-name>
            <surname>Travel Risk Management Maturity Model</surname>
          </string-name>
          (
          <issue>TRM3</issue>
          ), https://www.ijet.com/sites/default/files/WP_TRM3_
          <fpage>May2012</fpage>
          .pdf,
          <source>last accessed</source>
          <year>2018</year>
          /05/15.
        </mixed-citation>
      </ref>
      <ref id="ref15">
        <mixed-citation>
          15.
          <string-name>
            <surname>Merlino</surname>
            ,
            <given-names>G.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Arkoulis</surname>
            ,
            <given-names>S.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Distefano</surname>
            ,
            <given-names>S.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Papagianni</surname>
            ,
            <given-names>C.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Puliafito</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Papavassiliou</surname>
            ,
            <given-names>S.</given-names>
          </string-name>
          :
          <article-title>Mobile crowdsensing as a service: a platform for applications on top of sensing clouds</article-title>
          .
          <source>Future Generation Computer Systems</source>
          , vol.
          <volume>56</volume>
          , pp.
          <fpage>623</fpage>
          -
          <lpage>639</lpage>
          (
          <year>2016</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref16">
        <mixed-citation>
          16.
          <string-name>
            <surname>Formisano</surname>
            ,
            <given-names>C.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Pavia</surname>
            ,
            <given-names>D.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Gurgen</surname>
            ,
            <given-names>L.</given-names>
          </string-name>
          et al.:
          <article-title>The advantages of IoT and cloud applied to smart cities</article-title>
          .
          <source>In: 3rd International Conference Future Internet of Things and Cloud</source>
          ,
          <year>2015</year>
          , Rome, pp.
          <fpage>325</fpage>
          -
          <lpage>332</lpage>
          (
          <year>2015</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref17">
        <mixed-citation>
          17.
          <string-name>
            <surname>Dustdar</surname>
            ,
            <given-names>S.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Bhattacharya</surname>
            ,
            <given-names>K.</given-names>
          </string-name>
          :
          <article-title>The social compute unit</article-title>
          .
          <source>IEEE Internet Computing</source>
          ,
          <volume>15</volume>
          (
          <issue>3</issue>
          ), pp.
          <fpage>64</fpage>
          -
          <lpage>69</lpage>
          (
          <year>2011</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref18">
        <mixed-citation>
          18.
          <string-name>
            <surname>Sengupta</surname>
            <given-names>B.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Jain</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Bhattacharya</surname>
            ,
            <given-names>K.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Truong</surname>
          </string-name>
          , H.-L.,
          <string-name>
            <surname>Dustdar</surname>
            ,
            <given-names>S.</given-names>
          </string-name>
          :
          <article-title>Collective problem solving using social compute units</article-title>
          .
          <source>International Journal of Cooperative Information Systems</source>
          , vol.
          <volume>22</volume>
          , no.
          <issue>4</issue>
          (
          <year>2013</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref19">
        <mixed-citation>
          19.
          <string-name>
            <surname>Teslya</surname>
            ,
            <given-names>N.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Ponomarev</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          :
          <article-title>Smart Tourism Destination Support Scenario Based on Human-Computer Cloud</article-title>
          .
          <source>Proceedings of the 19th Conference of Open Innovations Association FRUCT</source>
          , pp.
          <fpage>242</fpage>
          -
          <lpage>247</lpage>
          . (
          <year>2016</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref20">
        <mixed-citation>
          20.
          <article-title>The Five Pillars of Travel Risk Management</article-title>
          , http://blog.gbta.org/
          <year>2017</year>
          /06/12/the-fivepillars
          <article-title>-of-travel-risk-management/</article-title>
          ,
          <source>last accessed</source>
          <year>2018</year>
          /05/15.
        </mixed-citation>
      </ref>
    </ref-list>
  </back>
</article>