Title :
Process Activities Supporting Security Principles
Author :
Buyens, Koen ; Scandariato, Riccardo ; Joosen, Wouter
Author_Institution :
Katholieke Univ. Leuven, Leuven
Abstract :
Security principles, like least privilege, are among the few resources in the body of knowledge for security that survived the test of time. Over the last few years, several secure software development processes have emerged that mention security principles and acknowledge their importance. Nevertheless, support for principles in security processes does not appear to be satisfactory. This paper analyzes a forefront security process (CLASP) and elicits both explicit and hidden relationships between process activities and security principles.
Keywords :
security of data; software engineering; process activit y; secure software development process; security principles; security process; Application software; Best practices; Computer applications; Computer industry; Guidelines; Monitoring; Programming; Security; Software maintenance; Software testing;
Conference_Titel :
Computer Software and Applications Conference, 2007. COMPSAC 2007. 31st Annual International
Conference_Location :
Beijing
Print_ISBN :
0-7695-2870-8
DOI :
10.1109/COMPSAC.2007.170