首页> 外文会议>Conference on cyber sensing >Secure It Now or Secure It Later: The Benefits of Addressing Cyber-Security from the Outset
【24h】

Secure It Now or Secure It Later: The Benefits of Addressing Cyber-Security from the Outset

机译:现在保护它或以后保护它:从一开始就解决网络安全的好处

获取原文

摘要

The majority of funding for research and development(R&D)in cyber-security is focused on the end of the software lifecycle where systems have been deployed or are nearing deployment. Recruiting of cyber-security personnel is similarly focused on end-of-life expertise. By emphasizing cyber-security at these late stages, security problems are found and corrected when it is most expensive to do so, thus increasing the cost of owning and operating complex software systems. Worse, expenditures on expensive security measures often mean less money for innovative developments. These unwanted increases in cost and potential slowing of innovation are unavoidable consequences of an approach to security that finds and remediate faults after software has been implemented. We argue that software security can be improved and the total cost of a software system can be substantially reduced by an appropriate allocation of resources to the early stages of a software project. By adopting a similar allocation of R&D funds to the early stages of the software lifecycle, we propose that the costs of cyber-security can be better controlled and, consequently, the positive effects of this R&D on industry will be much more pronounced.
机译:网络安全研究与开发(R&D)的大部分资金都集中在已部署系统或即将部署系统的软件生命周期的末尾。网络安全人员的招聘同样侧重于报废专业知识。通过在后期阶段强调网络安全,可以发现并纠正安全问题,而这是最昂贵的,因此会增加拥有和操作复杂软件系统的成本。更糟糕的是,昂贵的安全措施上的支出通常意味着创新开发所需的资金更少。这些不必要的成本增加和创新的潜在减慢是在实施软件后发现并修复故障的安全方法不可避免的结果。我们认为,通过在软件项目的早期阶段适当分配资源,可以提高软件安全性,并可以大幅降低软件系统的总成本。通过在软件生命周期的早期阶段采用类似的研发资金分配,我们建议可以更好地控制网络安全成本,因此,这种研发对行业的积极影响将更加明显。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号