An integrated risk measurement and optimization model for trustworthy software process management

被引:31
|
作者
Li, Jianping [1 ]
Li, Minglu [1 ,2 ]
Wu, Dengsheng [1 ,3 ]
Song, Hao [1 ,3 ]
机构
[1] Chinese Acad Sci, Inst Policy & Management, Beijing 100190, Peoples R China
[2] Natl Nat Sci Fdn China, Bur Planning, Beijing 100085, Peoples R China
[3] Chinese Acad Sci, Grad Univ, Beijing 100039, Peoples R China
关键词
Risk integration; Trustworthy software; Process risk measurement; Risk control optimization; Bayesian network learning; FUZZY-SET THEORY; BAYESIAN NETWORKS; AGGREGATIVE RISK; EVALUATE;
D O I
10.1016/j.ins.2011.09.040
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The growing demand for higher trustworthiness of software poses an unprecedented challenge to the software industry. Risk management is the important part for high quality software development processes. However, under the constraints of project cost and duration, it is very difficult to establish the budget for risk management. To integrate efficient risk management and pure software process is the goal of this paper. We propose a software process model with risk management and cost control modules to help improve software process risk management. Furthermore, based on this process model, a measurement model that includes process risk and software trustworthiness metrics is presented. Through risk management effectiveness calculation methods and risk transfer assumptions, a software process risk optimization model is proposed. This model can be used to derive an optimized risk management scheme for the process of trustworthy software development, with constraints of process cost and duration. Simulation cases are then analyzed by this model framework. The results show that risk management is critical to enhance trustworthiness but risk management is an effective complement, rather than the most fundamental process, to enhance the trustworthiness of software. Software developers should adopt appropriate and optimal strategies about risk management inputs, especially in lower CMMI level companies. (C) 2011 Elsevier Inc. All rights reserved.
引用
收藏
页码:47 / 60
页数:14
相关论文
共 50 条
  • [41] An integrated optimization model for train crew management
    Ernst, AT
    Jiang, H
    Krishnamoorthy, M
    Nott, H
    Sier, D
    ANNALS OF OPERATIONS RESEARCH, 2001, 108 (1-4) : 211 - 224
  • [42] Trustworthy Software Development Based on Model Driven Architecture
    Zhu, Yang
    Fei, Lanhua
    Yang, Nianhua
    INFORMATION COMPUTING AND APPLICATIONS, ICICA 2013, PT I, 2013, 391 : 193 - +
  • [43] Toward trustworthy software process models: an exploratory study on transformable process modeling
    Zhang, He
    Kitchenham, Barbara
    Jeffery, Ross
    JOURNAL OF SOFTWARE-EVOLUTION AND PROCESS, 2012, 24 (07) : 741 - 763
  • [44] ISO 31000-based integrated risk management process assessment model for IT organizations
    Barafort, Beatrix
    Mesquida, Antoni-Lluis
    Mas, Antonia
    JOURNAL OF SOFTWARE-EVOLUTION AND PROCESS, 2019, 31 (01)
  • [45] Software Architecture for Modeling and Optimization of the Process in the Laboratory Activity Management
    Serbanescu, Liviu
    VISION 2020: SUSTAINABLE GROWTH, ECONOMIC DEVELOPMENT, AND GLOBAL COMPETITIVENESS, VOLS 1-5, 2014, : 545 - 549
  • [46] A model for integrated building design process management
    Romano, VF
    de Oliveira, R
    Back, N
    INNOVATIVE DEVELOPMENTS IN ARCHITECTURE, ENGINEERING AND CONTRUCTION, 2003, : 741 - 748
  • [47] Research on the Integrated Business Process Management Model
    Zhang, Xiaojun
    Xi, Youmin
    Zhang, Xinguo
    PROCEEDINGS OF 2009 INTERNATIONAL CONFERENCE OF MANAGEMENT ENGINEERING AND INFORMATION TECHNOLOGY, VOLS 1 AND 2, 2009, : 481 - 485
  • [48] An algebraic model of service oriented trustworthy software architecture
    Zhao H.-Q.
    Sun J.
    Jisuanji Xuebao/Chinese Journal of Computers, 2010, 33 (05): : 890 - 899
  • [49] Measure Model of Trustworthy Software Based on Axiomatic Design
    Yang, Bin
    Xiao, Renbin
    2010 2ND INTERNATIONAL WORKSHOP ON DATABASE TECHNOLOGY AND APPLICATIONS PROCEEDINGS (DBTA), 2010,
  • [50] The Role of Software Process Simulation Modeling in Software Risk Management: a Systematic Review
    Liu, Dapeng
    Wang, Qing
    Xiao, Junchao
    ESEM: 2009 3RD INTERNATIONAL SYMPOSIUM ON EMPIRICAL SOFTWARE ENGINEERING AND MEASUREMENT, 2009, : 303 - 312