How can the developer benefit from security modeling?

Vienna(2007)

引用 16|浏览1
暂无评分
摘要
Security has become a necessary part of nearly every software development project, as the overall risk from malicious users is constantly increasing, due to increased consequences of failure, security threats and exposure to threats. There are few projects today where software security can be ignored. Despite this, security is still rarely taken into account throughout the entire software lifecycle; security is often an afterthought, bolted on late in development, with little thought to what threats and exposures exist. Little thought is given to maintaining security in the face of evolving threats and exposures. Software developers are usually not security experts. However, there are methods and tools available today that can help developers build more secure software. Security modeling, modeling of e.g. threats and vulnerabilities, is one such method that, when integrated in the software development process, can help developers prevent security problems in software. We discuss these issues, and present how modeling tools, vulnerability repositories and development tools can be connected to provide support for secure software development.
更多
查看译文
关键词
secure software,secure software development,software security,security problem,entire software lifecycle,security threat,security expert,security modeling,developer benefit,software developer,software development process,software lifecycle,software development,software engineering,information science,software quality,control systems,security model,computer science,software measurement,risk analysis,information security,programming,computer security
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要