• DocumentCode
    233161
  • Title

    Combining IID with BDD to Enhance the Critical Quality of Security Functional Requirements

  • Author

    Sen-Tarng Lai ; Fang-Yie Leu ; Chu, W.C.-C.

  • Author_Institution
    Dept. of Inf. Technol. & Manage., Shih Chien Univ., Taipei, Taiwan
  • fYear
    2014
  • fDate
    8-10 Nov. 2014
  • Firstpage
    292
  • Lastpage
    299
  • Abstract
    In software system, functional requirements are primary system requirements. Client cannot explicitly depicted security requirements and the development team is hard to understand security requirements, makes security requirements difficult to specific implant software system. In software system development process, security requirements often neglected and ignored. However, the cost of correcting security flaws in maintenance phase is over 100 times in requirements phase. Can´t effectively improve the system security, enterprises loss is bound to continue to expand. In order to enhance the security of software system, this paper combines the popular software development methodology IID (Interactive and Incremental Development) with BDD (Behavior Driven Development), institutionalized requires functional requirements must be integrated into security requirements. And, using BDD process features to evaluate the major quality of security functional requirements. Timely identifies and modifies the quality defects of security functional requirements item, effectively enhance the security of software systems.
  • Keywords
    formal specification; formal verification; security of data; software engineering; BDD; IID; behavior driven development; interactive and incremental development; primary system requirements; security functional requirements; security requirements; software system; software system development process; Boolean functions; Complexity theory; Data structures; Q-factor; Security; Software systems; BDD; IID; functional requirements; security functional requirements; security requirements;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Broadband and Wireless Computing, Communication and Applications (BWCCA), 2014 Ninth International Conference on
  • Conference_Location
    Guangdong
  • Print_ISBN
    978-1-4799-4174-2
  • Type

    conf

  • DOI
    10.1109/BWCCA.2014.78
  • Filename
    7016084