An Approach for Assessment Ensuring the Development of Secure Software in Prototyping Process

سال انتشار: 1394
نوع سند: مقاله ژورنالی
زبان: انگلیسی
مشاهده: 396

فایل این مقاله در 8 صفحه با فرمت PDF قابل دریافت می باشد

استخراج به نرم افزارهای پژوهشی:

لینک ثابت به این مقاله:

شناسه ملی سند علمی:

JR_IJOCIT-3-1_004

تاریخ نمایه سازی: 16 فروردین 1395

چکیده مقاله:

Nowadays, network security evaluation is not an only scanning of open ports, and explores the behavior of software as a key component of the system is essential and critical. Much software beneficial after production and in the process of applying thinks about the security of their applications and often it is sufficient to perform a penetration test. This increases the cost of fixing security flaws in the publication process, case and sporadic clashes with security at the application level. Inaccurate and incomplete understanding of the security requirements of software stakeholders, lack of proper management of changes, and security policies cause reduces the level of confidence. Security assessment should be much deeper than penetration testing and at the application layer even include functional security testing measures. In this paper, first we need to evaluate the safety and security of the software and a method will be provided for evaluating the safety level of the software. Using this methodology, the software security requirements of stakeholders are carefully identified and then according to the application and secure software development check list metrics, an acceptable level of reliability is achieved

نویسندگان

Ali Taati

MSc, Department of Electrical, Computer & IT, Zanjan Branch, Islamic Azad University

Hossein Erfani

University of Science and Culture Rasht Branch