返回
Reusable Security Requirements Repository Implementation Based on Application/System Components
DOI:10.1109/ACCESS.2021.3133020.png)
摘要
En 中文
Forming high quality requirements has a direct impact on project success. Gathering security requirements could be challenging, since it demands a multidisciplinary approach and security expertise. Security requirements repository enables an effective alternative for addressing this challenge. The main objective of this paper is to present the design of a practical repository model for reusable security requirements, which is easy to use and understand for even non-security experts. The paper also portrays an approach and a software tool for using this model to determine subtle security requirements for improved coverage. Proposed repository consists of attributes determined by examining common security problems covered in state-of-the-art publications. A test repository was prepared using specification files and Common Criteria documents. The outcomes of applying the proposed model were compared with the sample requirement sets included in the state-of-the-art publications. The results reveal that in the absence of a security requirements repository, key security points can be missed. Repository improves the completeness of the security terms with reasonable effort.
Keyword:
Security
Unified modeling language
Software
Requirements engineering
Companies
Standards organizations
Risk analysis
Computer security
information security
requirement's engineering
software reusability
期刊
IF:
3.6
论文数:
9.8W
被引数:
29.4W
机构
引用论文
FINERENONE-INDUCED ALBUMINURIA REDUCTION IN MALADAPTIVE FSGS: A CASE SERIESFINERENONE诱导的适应性不良性FSGS中白蛋白尿减少:一个病例系列
Natural Products and Nutrients against Different Viral Diseases: Prospects in Prevention and Treatment of SARS-CoV-2天然产物和营养素对抗不同病毒性疾病:SARS-CoV-2预防与治疗的前景
Medicina
IF0

