Organizational Barriers to the Implementation of Security Engineering

被引:0
|
作者
Cline, Bryan S. [1 ]
机构
[1] Childrens Hosp Philadelphia, Philadelphia, PA 19104 USA
关键词
Product Development; Security; Systems Engineering; INNOVATION; MODEL;
D O I
10.1109/IAS.2009.61
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The link between security engineering and systems engineering exists at the earliest stage of systems development, and, as a whole, there is sufficient evidence to suggest the discipline of security engineering is sufficiently mature to support its implementation. However, there is little in the literature on the practical application of security engineering and even less empirical work grounded in adoption theory. In contrast, the body of knowledge on quality programs is quite extensive and includes general literature on quality models as well as adoption studies of their implementation. Specific factors related to quality implementations are also well documented and generally well understood. This survey study clearly substantiates a connection between these quality factors and security engineering, provides the opportunity for further research on causal models, and supports the application of lessons learned from quality program efforts to the implementation of a security engineering methodology in system acquisition and development.
引用
收藏
页码:527 / 531
页数:5
相关论文
共 50 条
  • [1] ORGANIZATIONAL SYSTEMS BARRIERS TO ENGINEERING EFFECTIVENESS
    LIKER, JK
    HANCOCK, WM
    [J]. IEEE TRANSACTIONS ON ENGINEERING MANAGEMENT, 1986, 33 (02) : 82 - 91
  • [2] Bottom-of-the-Pyramid: ORGANIZATIONAL BARRIERS TO IMPLEMENTATION
    Olsen, Mette
    Boxenbaum, Eva
    [J]. CALIFORNIA MANAGEMENT REVIEW, 2009, 51 (04) : 100 - +
  • [3] ORGANIZATIONAL APPROACHES TO THE IMPLEMENTATION OF SIMULTANEOUS ENGINEERING
    SHENAS, DG
    DERAKHSHAN, S
    [J]. INTERNATIONAL JOURNAL OF OPERATIONS & PRODUCTION MANAGEMENT, 1994, 14 (10) : 30 - 43
  • [4] Barriers to Usable Security? Three Organizational Case Studies
    Caputo, Deanna D.
    Pfleeger, Shari Lawrence
    Sasse, M. Angela
    Ammann, Paul
    Offutt, Jeff
    Deng, Lin
    [J]. IEEE SECURITY & PRIVACY, 2016, 14 (05) : 22 - 32
  • [5] Implementation and effectiveness of organizational information security measures
    Hagen, Janne Merete
    Albrechtsen, Eirik
    Hovden, Jan
    [J]. Information Management and Computer Security, 2008, 16 (04): : 377 - 397
  • [6] Enhancing security requirements engineering by organizational learning
    Kurt Schneider
    Eric Knauss
    Siv Houmb
    Shareeful Islam
    Jan Jürjens
    [J]. Requirements Engineering, 2012, 17 : 35 - 56
  • [7] Enhancing security requirements engineering by organizational learning
    Schneider, Kurt
    Knauss, Eric
    Houmb, Siv
    Islam, Shareeful
    Juerjens, Jan
    [J]. REQUIREMENTS ENGINEERING, 2012, 17 (01) : 35 - 56
  • [8] Developing a computer security policy for organizational use and implementation
    Forcht, KA
    Ayers, WC
    [J]. JOURNAL OF COMPUTER INFORMATION SYSTEMS, 2000, 41 (02) : 52 - 57
  • [9] Developing a computer security policy for organizational use and implementation
    Forcht, Karen A.
    Ayers, Walter Cary
    [J]. Journal of Computer Information Systems, 2001, 41 (02) : 52 - 57
  • [10] ORGANIZATIONAL, STRATEGIC AND TECHNICAL BARRIERS TO SUCCESSFUL IMPLEMENTATION OF DATABASE MARKETING
    FLETCHER, K
    WRIGHT, G
    [J]. INTERNATIONAL JOURNAL OF INFORMATION MANAGEMENT, 1995, 15 (02) : 115 - 126