首页> 外文会议>2010 International Conference on Networking and Information Technology >Software risk assessment and evaluation process (SRAEP) using model based approach
【24h】

Software risk assessment and evaluation process (SRAEP) using model based approach

机译:使用基于模型的方法进行软件风险评估和评估过程(SRAEP)

获取原文

摘要

Software Risk Evaluation (SRE) is a process for identifying, analyzing, and developing mitigation strategies for risks in a software intensive system while it is in development. Risk assessment incorporates risk analysis and risk management, i.e. it combines systematic processes for risk identification and determination of their consequences, and how to deal with these risks? Many risk assessment methodologies exist, focusing on different types of risk or different areas of concern. Risk evaluation means to determine level of risk, prioritize the risk and categorize the risk. In this paper we have proposed a Software Risk Assessment and Evaluation Process (SRAEP) using model based approach. We have used model based approach because it requires correct description of the target system, its context and all security features. In SRAEP, we have used the software fault tree (SFT) to identify the risk. Finally we have compared the weaknesses of existing Software Risk Assessment and Estimation Model (SRAEM) with the proposed SRAEP in order to show the importance of software fault tree.
机译:软件风险评估(SRE)是一个过程,用于在开发过程中针对软件密集型系统识别,分析和制定缓解风险的策略。风险评估结合了风险分析和风险管理,即它结合了用于识别风险和确定后果的系统过程以及如何处理这些风险?存在许多风险评估方法,重点放在不同类型的风险或不同关注领域。风险评估意味着确定风险级别,对风险进行优先级划分以及对风险进行分类。在本文中,我们使用基于模型的方法提出了软件风险评估和评估流程(SRAEP)。我们使用基于模型的方法,因为它需要对目标系统,其上下文和所有安全功能进行正确的描述。在SRAEP中,我们使用了软件故障树(SFT)来识别风险。最后,我们将现有软件风险评估和评估模型(SRAEM)的缺点与建议的SRAEP进行了比较,以显示软件故障树的重要性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号