Analysis of Application of Security Patterns to Build Secure Systems

被引:0
|
作者
Ortiz, Roberto [1 ]
Garzas, Javier [2 ]
Fernandez-Medina, Eduardo [3 ]
机构
[1] Grp S21Sec Gest SA, S21SecLabs SOC, Valgrande 10, Madrid 28108, Spain
[2] Univ Rey Juan Carlos, Dept Comp Languages & Syst 2, Kybele Grp, Madrid 28933, Spain
[3] Univ Castilla La Mancha, Dept Informat Technol & Syst, GSyA Res Grp, Ciudad Real, Spain
关键词
Security patterns; secure systems; information security; security;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Both new technology business models and the new tendencies in the field of computing are forcing organizations to undergo a constant evolution in order to maintain their competitiveness in markets. This evolution has led to a continuous remodeling of companies 'systems to enable them to adapt to the new needs. These changes increase these systems' complexity, making them more vulnerable. Computer attacks against organizations are therefore increasing considerably. If this is to be avoided, information security engineers need reliable and validated solutions with which to confront security problems, along with agile solutions to confront the new technological necessities in an optimal manner. Security patterns are good mechanisms with which to perform this task since they provide documented, validated and tested solutions to recurring problems. In this paper we carry out an analysis of those proposals that use security patterns to build secure systems when this task is performed in the information systems of a real organization, with the objective of detecting any shortcomings and new needs.
引用
收藏
页码:652 / +
页数:3
相关论文
共 50 条
  • [1] Security patterns and secure systems design
    Fernandez, Eduardo B.
    [J]. Dependable Computing, Proceedings, 2007, 4746 : 233 - 234
  • [2] Abstract security patterns and the design of secure systems
    Fernandez, Eduardo B.
    Yoshioka, Nobukazu
    Washizaki, Hironori
    Yoder, Joseph
    [J]. CYBERSECURITY, 2022, 5 (01)
  • [3] Abstract security patterns and the design of secure systems
    Eduardo B. Fernandez
    Nobukazu Yoshioka
    Hironori Washizaki
    Joseph Yoder
    [J]. Cybersecurity, 5
  • [4] Designing Secure SCADA Systems Using Security Patterns
    Fernandez, Eduardo B.
    Larrondo-Petrie, Maria M.
    [J]. 43RD HAWAII INTERNATIONAL CONFERENCE ON SYSTEMS SCIENCES VOLS 1-5 (HICSS 2010), 2010, : 909 - 916
  • [5] Secure Design Patterns for Security in Smart Metering Systems
    Ur-Rehman, Obaid
    Zivic, Natasa
    [J]. UKSIM-AMSS NINTH IEEE EUROPEAN MODELLING SYMPOSIUM ON COMPUTER MODELLING AND SIMULATION (EMS 2015), 2015, : 278 - 283
  • [6] Towards a Pattern-Based Security Methodology to Build Secure Information Systems
    Ortiz, Roberto
    Moral-Rubio, Santiago
    Garzas, Javier
    Fernandez-Medina, Eduardo
    [J]. WOSIS 2011: SECURITY IN INFORMATION SYSTEMS, 2011, : 59 - +
  • [7] A Methodology for Modeling and Analysis of Secure Systems Using Security Patterns and Mitigation Use Cases
    Maher, Zulfikar Ahmed
    Shah, Asadullah
    Shaikh, Humaiz
    Rahu, Ghulam Ali
    Butt, Pinial Khan
    Chandio, Shahmurad
    Shaikh, Saima
    [J]. PROCEEDINGS OF THE 2018 7TH INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION ENGINEERING (ICCCE), 2018, : 268 - 273
  • [8] SoSPa: A System of Security Design Patterns for Systematically Engineering Secure Systems
    Nguyen, Phu H.
    Yskout, Koen
    Heyman, Thomas
    Klein, Jacques
    Scandariato, Riccardo
    Le Traon, Yves
    [J]. 2015 ACM/IEEE 18TH INTERNATIONAL CONFERENCE ON MODEL DRIVEN ENGINEERING LANGUAGES AND SYSTEMS (MODELS), 2015, : 246 - 255
  • [9] Modeling secure systems using an agent-oriented approach and security patterns
    Mouratidis, Haralambos
    Weiss, Michael
    Giorgini, Paolo
    [J]. INTERNATIONAL JOURNAL OF SOFTWARE ENGINEERING AND KNOWLEDGE ENGINEERING, 2006, 16 (03) : 471 - 498
  • [10] Performance Analysis of Secure GPSM Systems for Physical Layer Security
    Pang, Yashan
    Lei, Xia
    Xiao, Yue
    Li, You
    Xiang, Wei
    [J]. 2019 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2019,