首页> 外文会议>International Conference on Availability, Reliability, and Security >Software Inspections Using Guided Checklists to Ensure Security Goals
【24h】

Software Inspections Using Guided Checklists to Ensure Security Goals

机译:软件检查使用引导清单确保安全目标

获取原文

摘要

Security is a crucial issue in many modern software systems and can lead to immense costs if required security goals are not fulfilled. Fewer techniques exist to address the systematic analysis and detection of security problems, especially during early development phases. Based on well-known and established inspection techniques, we investigated traditional reading support, which did not fit exactly what we needed to ensure security goals. Therefore, we developed a new kind of checklist which we call guided checklist. This kind of checklist focuses the inspector much more on how to check security goals and provides the inspector with more fine-grained support than traditional reading support. To derive such checklists, we developed a model for security goals. A continuous example shows what the security goal model looks like and how to apply the guided checklist.
机译:安全性是许多现代软件系统中的重要问题,如果未满足需要的安全目标,可以导致巨大的成本。存在较少的技术来解决安全问题的系统分析和检测,尤其是在早期开发阶段。基于众所周知和建立的检测技术,我们调查了传统的阅读支持,这并不适合我们需要确保安全目标所需的内容。因此,我们开发了一种新的清单,我们称之为核对清单。这种清单更多地关注检查员如何检查安全目标,并为检查员提供比传统阅读支持更细粒度的支持。要派生此类检查表,我们开发了一种安全目标的模型。连续示例显示了安全目标模型的样子以及如何应用引导清单。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号