• DocumentCode
    2814767
  • Title

    Evaluation of Security Lifecycle for the Quantitative Analysis

  • Author

    Jip, Kim Young ; Lee, Eun-Ser

  • Author_Institution
    Soong-Sil Univ. Comput. Inst., Seoul
  • fYear
    2008
  • fDate
    28-30 Aug. 2008
  • Firstpage
    727
  • Lastpage
    731
  • Abstract
    This paper is intended to evaluate security lifecycle and efficiency in ISO/IEC 15408, common criteria. There are many risk items that cause the security requirement problems during software development. This paper evaluates the efficiency of security lifecycle that detection of new risk items and remove ratio at the security requirement lifecycle. For the similar domain projects, we can remove security risk items and manage to progress them by using security lifecycle, which can greatly improve the software process.
  • Keywords
    IEC standards; ISO standards; formal specification; program diagnostics; program testing; risk analysis; safety-critical software; security of data; software process improvement; software standards; IEC 15408; ISO 15408; risk item detection; security requirement lifecycle; software development; software process improvement; Computer hacking; Computer security; Data security; IEC standards; ISO standards; Information security; National security; Risk management; Testing; Uniform resource locators; Analysis; Security Lifecycle;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Convergence and Hybrid Information Technology, 2008. ICHIT '08. International Conference on
  • Conference_Location
    Daejeon
  • Print_ISBN
    978-0-7695-3328-5
  • Type

    conf

  • DOI
    10.1109/ICHIT.2008.212
  • Filename
    4622914