首页> 外文期刊>International Journal of Hybrid Intelligent Systems >Estimating influence of threat using Misuse Case Oriented Quality Requirements (MCOQR) metrics: Security requirements engineering perspective
【24h】

Estimating influence of threat using Misuse Case Oriented Quality Requirements (MCOQR) metrics: Security requirements engineering perspective

机译:使用面向不当案例的质量需求(MCOQR)指标来评估威胁的影响:安全需求工程学的观点

获取原文
获取原文并翻译 | 示例
           

摘要

Security is an aspect which contains varied classification and dimensions. One such classification of security is software security and it's facet is metrics. Software security metrics provides an estimation of how secure a software could be and indicates that where the loophole might occur while it is being developed. The realization of security implementation should occur during the initiation of software development, i.e. the requirements elicitation phase among the software development team. Misuse Case Oriented Quality Requirements (MCOQR) Metrics framework provides an easy and comprehensive way of identifying security loopholes in software much before it is developed. It provides 6 dimensional security indicators and estimators so that security team can have an insight into areas which needs further improvement and for proper drafting of security requirements. This research paper takes into account influence of threat predicted using the misuse case modeling for estimating the security aspect of software much before it is developed and implemented practically. In this paper an empirical study is provided that shows how security team may identify core areas where security could be enhanced further. The research work proves that if MCOQR metrics framework is applied during software development the outcome is more secure software. Keywords: Security, software security, security metrics, software security metrics, misuse case, security requirements engineering
机译:安全是一个包含不同分类和维度的方面。安全性的一种这样的分类是软件安全性,而它的方面是度量。软件安全度量提供了软件的安全性评估,并指出了在软件开发过程中漏洞可能发生的位置。安全实施的实现应在软件开发的初始阶段即软件开发团队的需求确定阶段进行。面向用例的质量要求(MCOQR)度量标准框架提供了一种简单,全面的方法,可以在软件开发之前就识别出软件中的安全漏洞。它提供了6维的安全指标和估算器,因此安全团队可以深入了解需要进一步改进的领域以及正确起草安全要求的领域。本研究报告考虑了使用误用案例建模预测的威胁的影响,以便在软件开发和实际实施之前就对其进行评估,以评估其安全性。本文提供了一项经验研究,该研究表明安全团队如何确定可以进一步增强安全性的核心领域。研究工作证明,如果在软件开发期间应用MCOQR指标框架,则结果将是更安全的软件。关键字:安全性,软件安全性,安全性指标,软件安全性指标,滥用案例,安全性需求工程

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号