• DocumentCode
    3283199
  • Title

    Process Activities Supporting Security Principles

  • Author

    Buyens, Koen ; Scandariato, Riccardo ; Joosen, Wouter

  • Author_Institution
    Katholieke Univ. Leuven, Leuven
  • Volume
    2
  • fYear
    2007
  • fDate
    24-27 July 2007
  • Firstpage
    281
  • Lastpage
    292
  • Abstract
    Security principles, like least privilege, are among the few resources in the body of knowledge for security that survived the test of time. Over the last few years, several secure software development processes have emerged that mention security principles and acknowledge their importance. Nevertheless, support for principles in security processes does not appear to be satisfactory. This paper analyzes a forefront security process (CLASP) and elicits both explicit and hidden relationships between process activities and security principles.
  • Keywords
    security of data; software engineering; process activit y; secure software development process; security principles; security process; Application software; Best practices; Computer applications; Computer industry; Guidelines; Monitoring; Programming; Security; Software maintenance; Software testing;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Software and Applications Conference, 2007. COMPSAC 2007. 31st Annual International
  • Conference_Location
    Beijing
  • ISSN
    0730-3157
  • Print_ISBN
    0-7695-2870-8
  • Type

    conf

  • DOI
    10.1109/COMPSAC.2007.170
  • Filename
    4291137