DocumentCode :
2413284
Title :
Computational Evaluation of Software Security Attributes
Author :
Walton, G.H. ; Longstaff, T.A. ; Linger, R.C.
Author_Institution :
Software Eng. Inst., Carnegie Mellon Univ., Pittsburgh, PA
fYear :
2009
fDate :
5-8 Jan. 2009
Firstpage :
1
Lastpage :
10
Abstract :
In the current state of practice, security properties of software systems are typically assessed through subjective, labor-intensive human evaluation. Moreover, much of the quantitative security analysis research to date is characterized by the development of approximate solutions and/or based on assumptions that severely constrain the operational utility of the results. In order to achieve a dramatic increase in maturing the discipline of software security engineering, a fundamentally different approach to analysis and evaluation of security attributes is required. The computational security attributes (CSA) approach to software security analysis provides a new approach for specification of security attributes in terms of data and transformation of data by programs. This paper provides an introduction to the CSA approach, provides behavioral requirements for several security attributes, and discusses possible application of the CSA approach to support analysis of security attributes during software development, acquisition, verification,and operation.
Keywords :
program verification; security of data; software engineering; software maintenance; behavioral requirement; computational security attribute evaluation; labor-intensive human evaluation; quantitative software security engineering; security of data; software acquisition; software development; software operation; software verification; Application software; Data security; Databases; Educational institutions; Humans; Laboratories; Physics computing; Programming; Software engineering; Software systems;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
System Sciences, 2009. HICSS '09. 42nd Hawaii International Conference on
Conference_Location :
Big Island, HI
ISSN :
1530-1605
Print_ISBN :
978-0-7695-3450-3
Type :
conf
DOI :
10.1109/HICSS.2009.122
Filename :
4755420
Link To Document :
بازگشت