• DocumentCode
    2971843
  • Title

    ASASI: An Environment for Addressing Software Application Security Issues

  • Author

    Essafi, Mehrez ; Labed, Lamia ; Ghezala, Henda Ben

  • Author_Institution
    University of Manouba, Tunis - Tunisia
  • fYear
    2006
  • fDate
    Oct. 2006
  • Firstpage
    19
  • Lastpage
    19
  • Abstract
    Security is an emergent property of a software system. Several efforts are undertaken, to improve software security. However, developers still miss or misuse acquired knowledge. This is mainly due to domain immaturity, newness of the field, process complexity and absence of environments supporting such development. This paper presents our environment denoted ASASI for Addressing Software Application Security Issues. The main feature of the proposed environment is that it is based on a strategy oriented process model that provides a two level guidance. The first level guidance is strategic helping developers choosing one among compilations of the existing methods, standards and best practices. The second level guidance is tactical helping developers achieving their selection for producing secure software. The supported process model is easily extensible and allows building customized processes adapted to context, developer¿s finalities and product state. This flexibility allows the environment evolving through time to support new security requirements. Keywords-environment;
  • Keywords
    Application software; Best practices; Computer security; Information security; National security; Software performance; Software safety; Software standards; Software systems; Standards development;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Systems and Networks Communications, 2006. ICSNC '06. International Conference on
  • Conference_Location
    Tahiti
  • Print_ISBN
    0-7695-2699-3
  • Type

    conf

  • DOI
    10.1109/ICSNC.2006.23
  • Filename
    4041534