Title :
Towards Requirement and Modeling Driven Security Evaluation
Author_Institution :
VTT Technical Research Centre of Finland
Abstract :
Development of the information security requirements of practical telecommunications and software-intensive systems is typically at an inadequate level and relies heavily on the experience of the security professionals. Security requirements are in the focus in all phases of security engineering. Obviously, automated approaches are needed in this field. We here introduce a framework for security evaluation based on security requirement definition, behavior modeling and evidence collection.
Keywords :
Costs; IEC standards; ISO standards; Information security; Maintenance engineering; Privacy; Reliability engineering; Software engineering; Testing; Usability;
Conference_Titel :
Systems and Networks Communications, 2006. ICSNC '06. International Conference on
Conference_Location :
Tahiti
Print_ISBN :
0-7695-2699-3
DOI :
10.1109/ICSNC.2006.72