首页> 外文会议> >Security Requirements Elicitation via Weaving Scenarios Based on Security Evaluation Criteria
【24h】

Security Requirements Elicitation via Weaving Scenarios Based on Security Evaluation Criteria

机译:基于安全性评估标准的编织方案进行安全性需求启发

获取原文

摘要

Software is required to comply with the laws and standards of software security. However, stakeholders with less concern regarding security can neither de- scribe the behaviour of the system with regard to secu- rity nor validate the system''s behaviour when the secu- rity function conflicts with usability. Scenarios or use- case specifications are common in requirements elici- tation and are useful to analyse the usability of the system from a behavioural point of view. In this paper, the authors propose a method to weave scenario frag- ments based on security evaluation criteria into sce- narios. The experiments showed that the weaving method led to a better scenario than the method in- volving writing or modifying the scenario with refer- ence to security evaluation criteria. Keywords: requirements elicitation, security require- ments, scenario analysis, aspect-oriented software de- velopment
机译:软件必须符合软件安全的法律和标准。但是,当安全功能与可用性冲突时,对安全性不太关注的利益相关者既无法描述系统在安全性方面的行为,也无法验证系统的行为。场景或用例规范在需求启发中很常见,对于从行为的角度分析系统的可用性很有用。在本文中,作者提出了一种基于安全评估标准将场景碎片编织到场景中的方法。实验表明,与参考安全性评估标准编写或修改方案相比,编织方法产生的方案更好。关键字:需求引发,安全需求,场景分析,面向方面的软件开发

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号