The ISDF Framework: Towards Secure Software Development

被引:4
|
作者
Alkussayer, Abdulaziz [1 ]
Allen, William H. [1 ]
机构
[1] Florida Inst Technol, Dept Comp Sci, Melbourne, FL 32901 USA
来源
关键词
Security Patterns; Secure Development; Security Framework;
D O I
10.3745/JIPS.2010.6.1.091
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The rapid growth of communication and globalization has changed the software engineering process. Security has become a crucial component of any software system. However, software developers often lack the knowledge and skills needed to develop secure software. Clearly, the creation of secure software requires more than simply mandating the use of a secure software development lifecycle; the components produced by each stage of the lifecycle must be correctly implemented for the resulting system to achieve its intended goals. This study demonstrates that a more effective approach to the development of secure software can result from the integration of carefully selected security patterns into appropriate stages of the software development lifecycle to ensure that security designs are correctly implemented. The goal of this study is to provide developers with an Integrated Security Development Framework (ISDF) that can assist them in building more secure software.
引用
下载
收藏
页码:91 / 106
页数:16
相关论文
共 50 条
  • [41] Adherence to Secure Software Development Lifecycle
    Omar, Alaa'
    Alsadeh, Ahmad
    Nawahdah, Mamoun
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON SOFTWARE TECHNOLOGIES (ICSOFT), 2022, : 410 - 417
  • [42] Towards the design of a Secure and Compliant Framework for OpenEMR
    Acharya, Subrata
    Yin, Yuehan
    Mak, Alexander
    2017 IEEE INTERNATIONAL CONFERENCE ON BIOINFORMATICS AND BIOMEDICINE (BIBM), 2017, : 992 - 999
  • [43] The ISDF Framework: Integrating Security Patterns and Best Practices
    Alkussayer, Abdulaziz
    Allen, William H.
    ADVANCES IN INFORMATION SECURITY AND ITS APPLICATION, 2009, 36 : 17 - 28
  • [44] Adaption of Integrated Secure Guide for Secure Software Development Lifecycle
    Lee, Ki-Hyun
    Park, Young B.
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2016, 10 (06): : 145 - 154
  • [45] TOWARDS A FRAMEWORK FOR SOFTWARE MEASUREMENT VALIDATION
    KITCHENHAM, B
    LAWRENCE, S
    FENTON, N
    IEEE TRANSACTIONS ON SOFTWARE ENGINEERING, 1995, 21 (12) : 929 - 944
  • [46] The situational factors that affect the software development process: Towards a comprehensive reference framework
    Clarke, Paul
    O'Connor, Rory V.
    INFORMATION AND SOFTWARE TECHNOLOGY, 2012, 54 (05) : 433 - 447
  • [47] Towards a Software Framework for Model Interoperability
    Dascalu, Sergiu
    Fritzinger, Eric
    Okamoto, Sohei
    Harris, Fred
    2011 9TH IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), 2011,
  • [48] Adaption of a Secure Software Development Methodology for Secure Engineering Design
    Von Solms, Sune
    Futcher, Lynn A.
    IEEE ACCESS, 2020, 8 : 125630 - 125637
  • [49] Towards a software component certification framework
    Alvaro, Alexandre
    de Almeida, Eduardo Santana
    Meira, Silvio Lemos
    USIC 2007: PROCEEDINGS OF THE SEVENTH INTERNATIONAL CONFERENCE ON QUALITY SOFTWARE, 2007, : 298 - +
  • [50] Towards a formal framework for software reuse
    Mili, R
    Raymond, J
    INFORMATION SCIENCES, 1998, 110 (3-4) : 135 - 149