• DocumentCode
    3372216
  • Title

    Incorporating Security Requirements Engineering into the Rational Unified Process

  • Author

    Mead, Nancy R. ; Viswanathan, Venkatesh ; Zhan, Justin

  • Author_Institution
    Carnegie Mellon Univ., Pittsburgh, PA
  • fYear
    2008
  • fDate
    24-26 April 2008
  • Firstpage
    537
  • Lastpage
    542
  • Abstract
    This paper provides a roadmap for developing security-critical projects using rational unified process as a framework for development. The security quality requirements engineering (SQUARE) methodology provides a way to address security issues early in the development lifecycle. SQUARE can be more effective when it fits into an organization´s existing development process. Hence this paper describes a way to fit the SQUARE methodology into the rational unified process.
  • Keywords
    formal specification; security of data; rational unified process; security quality requirements engineering; security requirements engineering; security-critical projects; Computer industry; Information security; Information technology; Large-scale systems; Performance analysis; Production; Protection; Risk analysis; Risk management; Software engineering; RUP; Security Requirements; Software Engineering;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Information Security and Assurance, 2008. ISA 2008. International Conference on
  • Conference_Location
    Busan
  • Print_ISBN
    978-0-7695-3126-7
  • Type

    conf

  • DOI
    10.1109/ISA.2008.19
  • Filename
    4511624