【24h】

Requirements Engineering in Secure Software Systems: Factors that Influence Requirements Risk Analysis and Risk Management

机译:安全软件系统中的需求工程:影响需求风险分析和风险管理的因素

获取原文
获取原文并翻译 | 示例

摘要

Although a significant amount of research has been devoted to software engineering practices, methods for developing secure software systems have been somewhat overlooked by industry and academe, viewing security as something that is bolted on at the end of a project rather than baked into the development lifecycle. As software systems become more complex, are accessed by greater numbers of users, and contain more sensitive information, making sure applications are secure is becoming increasingly important. Within the last few years, there has been a renewed focus on developing secure software systems. Gathering, analyzing, and managing requirements for secure software projects are difficult because of factors related to cost, expertise, and time constraints. In addition, secure requirements often clash with traditional non-secure software requirements, which result in project delivery delays, increases in cost, reduction in quality, and stakeholder disappointment. In order to overcome these issues, it is necessary to understand the importance of secure requirements risk analysis and requirements risk management. This paper discusses these difficulties in relation to secure system risk analysis, and suggests methods for reducing or mitigating some of these issues.
机译:尽管已经对软件工程实践进行了大量研究,但是用于开发安全软件系统的方法已为业界和学术界所忽视,他们将安全性视为在项目结束时就紧追不舍,而不是进入开发生命周期。 。随着软件系统变得越来越复杂,越来越多的用户访问并包含更多敏感信息,确保应用程序的安全性变得越来越重要。在过去的几年中,人们重新将重点放在开发安全软件系统上。由于与成本,专业知识和时间限制相关的因素,很难收集,分析和管理安全软件项目的需求。此外,安全需求通常与传统的非安全软件需求发生冲突,从而导致项目交付延迟,成本增加,质量降低以及利益相关者失望。为了克服这些问题,有必要了解安全需求风险分析和需求风险管理的重要性。本文讨论了与安全系统风险分析相关的这些困难,并提出了减少或减轻其中一些问题的方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号