The ISDF Framework: Towards Secure Software Development

被引:4
|
作者
Alkussayer, Abdulaziz [1 ]
Allen, William H. [1 ]
机构
[1] Florida Inst Technol, Dept Comp Sci, Melbourne, FL 32901 USA
来源
关键词
Security Patterns; Secure Development; Security Framework;
D O I
10.3745/JIPS.2010.6.1.091
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The rapid growth of communication and globalization has changed the software engineering process. Security has become a crucial component of any software system. However, software developers often lack the knowledge and skills needed to develop secure software. Clearly, the creation of secure software requires more than simply mandating the use of a secure software development lifecycle; the components produced by each stage of the lifecycle must be correctly implemented for the resulting system to achieve its intended goals. This study demonstrates that a more effective approach to the development of secure software can result from the integration of carefully selected security patterns into appropriate stages of the software development lifecycle to ensure that security designs are correctly implemented. The goal of this study is to provide developers with an Integrated Security Development Framework (ISDF) that can assist them in building more secure software.
引用
下载
收藏
页码:91 / 106
页数:16
相关论文
共 50 条
  • [1] “A framework for development of secure software”
    Kakali Chatterjee
    Daya Gupta
    Asok De
    CSI Transactions on ICT, 2013, 1 (2) : 143 - 157
  • [2] SOFTWARE DEVELOPMENT METHODOLOGY FOR INNOVATIVE PROJECTS - ISDF METHODOLOGY
    Despa, Mihai Liviu
    PROCEEDINGS OF THE 14TH INTERNATIONAL CONFERENCE ON INFORMATICS IN ECONOMY (IE 2015): EDUCATION, RESEARCH & BUSINESS TECHNOLOGIES, 2015, : 398 - 409
  • [3] Towards a Secure Agile Software Development Process
    Adelyar, S. Hassan
    Norta, Alex
    PROCEEDINGS 2016 10TH INTERNATIONAL CONFERENCE ON THE QUALITY OF INFORMATION AND COMMUNICATIONS TECHNOLOGY (QUATIC), 2016, : 101 - 106
  • [4] An automation framework design for secure software development
    Mythily, M.
    Valarmathi, M. L.
    Durai, C. Anand Deva
    Rexie, J. A. M.
    JOURNAL OF SOFTWARE-EVOLUTION AND PROCESS, 2019, 31 (10)
  • [5] Towards a Methodology for the Development of Secure Cryptographic Software
    Braga, Alexandre
    Dahab, Ricardo
    PROCEEDINGS OF 2016 INTERNATIONAL CONFERENCE ON SOFTWARE SECURITY AND ASSURANCE (ICSSA), 2016, : 25 - 30
  • [6] iSDF: an Integrated Software-defined Computing Framework for Scientific Experiments
    Kim, Seoyoung
    Ahn, Julim
    Kim, Heewon
    Kim, Yoonhee
    Choi, Jieun
    2017 19TH ASIA-PACIFIC NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (APNOMS 2017): MANAGING A WORLD OF THINGS, 2017, : 157 - 162
  • [7] Towards a comprehensive framework for secure systems development
    Mouratidis, Haralambos
    Juerjens, Jan
    Fox, Jorge
    ADVANCED INFORMATION SYSTEMS ENGINEERING, PROCEEDINGS, 2006, 4001 : 48 - 62
  • [8] Towards Incorporation of Software Security Testing Framework in Software Development
    Hassan, Nor Hafeizah
    Selamat, Siti Rahayu
    Sahib, Shahrin
    Hussin, Burairah
    SOFTWARE ENGINEERING AND COMPUTER SYSTEMS, PT 1, 2011, 179 : 16 - 30
  • [9] Towards the Development of a Framework for Education in Software Measurement
    Villavicencio, Monica
    Abran, Alain
    2013 JOINT CONFERENCE OF THE 23RD INTERNATIONAL WORKSHOP ON SOFTWARE MEASUREMENT AND THE 2013 EIGHTH INTERNATIONAL CONFERENCE ON SOFTWARE PROCESS AND PRODUCT MEASUREMENT (IWSM-MENSURA), 2013, : 113 - 119
  • [10] Towards a delegation-type secure software development method
    Mihelic, Anze
    Hovelja, Tomaz
    Vrhovec, Simon L. R.
    THIRD CENTRAL EUROPEAN CYBERSECURITY CONFERENCE (CECC 2019), 2019,