首页> 外文期刊>CSI Transactions on ICT >“A framework for development of secure software”
【24h】

“A framework for development of secure software”

机译:“安全软件开发框架”

获取原文
获取原文并翻译 | 示例
       

摘要

To design, build and deploy secure systems, we must integrate security into our application development life cycle and adapt current software engineering practices and methodologies to include specific security-related activities. Developers enforces security measures during design phase of software development processes which may end up in specifying security related architecture constraints that are not really necessary. To eliminate this problem, we propose a Framework for Security Engineering Process that involves converting security requirements and threats into design decisions to mitigate the identified security threats. The identified design attributes are prioritized and a security design template is prepared. We have stored various cryptographic techniques and their analytic attributes in the repository to find out the specific cryptographic technique that would eventually help in the later stages of the design process by eliminating unnecessary design constraints in a particular scenario.
机译:为了设计,构建和部署安全系统,我们必须将安全性集成到应用程序开发生命周期中,并调整当前的软件工程实践和方法,以包括与安全性相关的特定活动。开发人员在软件开发过程的设计阶段强制执行安全措施,最终可能会指定不必要的与安全相关的体系结构约束。为了消除此问题,我们提出了一个安全工程流程框架,该框架涉及将安全要求和威胁转换为设计决策,以减轻已识别的安全威胁。确定了设计属性的优先级,并准备了安全设计模板。我们已经在存储库中存储了各种加密技术及其分析属性,以找出特定的加密技术,这些技术最终将通过消除特定场景中不必要的设计约束而最终对设计过程的后期阶段有所帮助。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号