首页> 外文会议>International Conference on Product-Focused Software Process Improvement >Threat Analysis in Practice - Systematically Deriving Security Requirements
【24h】

Threat Analysis in Practice - Systematically Deriving Security Requirements

机译:威胁分析实践 - 系统地导出安全要求

获取原文

摘要

With the growing number of incidents, the topic security gains more and more attention across all domains. Organizations realize their lack of state-of-the-art security practices, however, they struggle to improve their software lifecycle in terms of security. In this talk, we introduce the concept of security by design that implements security practices within the whole software lifecycle. Based on our practical experience from industry projects in the regulated industrial automation and unregulated classical IT domain, we explain how to perform a threat analysis and how to integrate it into the software lifecycle.
机译:随着事件越来越多的事件,主题安全越来越多地关注所有域。组织意识到他们缺乏最先进的安全实践,然而,他们努力在安全方面改善他们的软件生命周期。在此谈话中,我们通过设计在整个软件生命周期内实现安全实践的设计介绍了安全性的概念。基于我们在监管工业自动化中行业项目的实践经验和未调节的经典IT域,我们解释了如何执行威胁分析以及如何将其集成到软件生命周期中。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号