DocumentCode
3631635
Title
RUP-based process model for security requirements engineering in value-added service development
Author
Hrvoje Belani;Zeljka Car;Antun Caric
Author_Institution
University of Zagreb, Faculty of Electrical Engineering and Computing Department of Telecommunications, Unska 3, HR-10000, Croatia
fYear
2009
fDate
5/1/2009 12:00:00 AM
Firstpage
54
Lastpage
60
Abstract
Due to the spreading of SMS services and appearing of new business models, value-added SMS services have been introduced. According to the research results about wide distribution of security incidents on ICT systems worldwide, in spite of known security solutions, there is a necessity for organizational approach to implement security. This paper presents research and development efforts in building process model SecuRUP for security requirements engineering conformed to RUP framework. The model consists of processes, artifacts, activities and according roles for successful elicitation, analysis and specification of recognized security requirements and is validated on presented case study. The model validation results have shown significant process improvement, especially on roles and activities identification in SecuRUP elaboration process, but only further case studies in industry can be best indicators for usefulness of such models.
Keywords
"Protection","Programming","Message service","Privacy","Software performance","Software maintenance","Communication system security","Mobile communication","Peer to peer computing","Telecommunication computing"
Publisher
ieee
Conference_Titel
Software Engineering for Secure Systems, 2009. SESS ´09. ICSE Workshop on
Print_ISBN
978-1-4244-3725-2
Type
conf
DOI
10.1109/IWSESS.2009.5068459
Filename
5068459
Link To Document