• Title of article

    On the secure software development process: CLASP, SDL and Touchpoints compared

  • Author/Authors

    De Win، نويسنده , , Bart and Scandariato، نويسنده , , Riccardo and Buyens، نويسنده , , Koen and Grégoire، نويسنده , , Johan and Joosen، نويسنده , , Wouter، نويسنده ,

  • Issue Information
    ماهنامه با شماره پیاپی سال 2009
  • Pages
    20
  • From page
    1152
  • To page
    1171
  • Abstract
    Development processes for software construction are common knowledge and mainstream practice in most development organizations. Unfortunately, these processes offer little support in order to meet security requirements. Over the years, research efforts have been invested in specific methodologies and techniques for secure software engineering, yet dedicated processes have been proposed only recently. s paper, three high-profile processes for the development of secure software, namely OWASP’s CLASP, Microsoft’s SDL and McGraw’s Touchpoints, are evaluated and compared in detail. The paper identifies the commonalities, discusses the specificity of each approach, and proposes suggestions for improvement.
  • Keywords
    SDL , Touchpoints , CLASP , Secure software , Software process
  • Journal title
    Information and Software Technology
  • Serial Year
    2009
  • Journal title
    Information and Software Technology
  • Record number

    2374511