• DocumentCode
    3672901
  • Title

    Method Selection and Tailoring for Agile Threat Assessment and Mitigation

  • Author

    Stephan Renatus;Clemens Teichmann;Jörn

  • fYear
    2015
  • Firstpage
    548
  • Lastpage
    555
  • Abstract
    Security engineering and agile development are often perceived as a clash of cultures. To address this clash, several approaches have been proposed that allow for agile security engineering. Unfortunately, agile development organization differ in their actual procedures and environmental properties resulting in varying requirements. We propose an approach to compare and select methods for agile security engineering. Furthermore, our approach addresses adaptation or construction of a tailored method taking the existing development culture into account. We demonstrate the feasibility of our proposal and report early experiences from its application within a small development organization for digital solutions in the automotive domain.
  • Keywords
    "Security","Planning","Guidelines","Organizations","Proposals","Data models","Training"
  • Publisher
    ieee
  • Conference_Titel
    Availability, Reliability and Security (ARES), 2015 10th International Conference on
  • Type

    conf

  • DOI
    10.1109/ARES.2015.96
  • Filename
    7299964