Process Activities Supporting Security Principles
Buyens, K.; Scandariato, R.; Joosen, W.
Computer Software and Applications Conference, 2007. COMPSAC 2007. 31st Annual International
Volume 2, Issue , 24-27 July 2007 Page(s):281 - 292
Digital Object Identifier 10.1109/COMPSAC.2007.170
Summary:Security principles, like least privilege, are among the few resources in the body of knowledge for security that survived the test of time. Over the last few years, several secure software development processes have emerged that mention security principles and acknowledge their importance. Nevertheless, support for principles in security processes does not appear to be satisfactory. This paper analyzes a forefront security process (CLASP) and elicits both explicit and hidden relationships between process activities and security principles.
View citation and abstract |