Security Assurance Model of Software Development for Global Software Development Vendors
نویسندگان
چکیده
The number of security attacks and the impact has grown considerably in recent several years. As a result, new emerging software development models are required that assist developing is secure by default. This article reviews most widely used models. It proposes Security Assurance Model (SAM) for Software Development adaptable to all contemporary scenarios, emphasizing global (GSD) vendor companies. SAM was developed after studying 11 well-known analyzing results obtained from systematic literature review (SLR) questionnaire survey. consists seven assurance levels: Governance Threat Analysis, Secure Requirement Design, Coding, Testing Review, Deployment, Improvement. levels consist 46 critical risks (CSSRs) 388 practices addressing these risks. proposed assessed based on tool created Motorola, which evaluate present state company’s processes find areas improvement. We conducted 3 case studies companies, using data real projects examine practical experiment each company. indicate helps measure level an organization. In addition, it can potentially serve as framework researchers develop measures.
منابع مشابه
Software Development for Simulation of Reformer Furnace
In recent years, lots of research has been done on effective usage of natural gas; the first step in these processes is conversion of natural gas to Syngas. Natural gas reforming process by refomer furnace is commonly used for syngas and hydrogen production. In this paper, a windows based software, RIPI-RefSim, is introduced. By using proper heat, mass, kinetic and thermodynamic models as w...
متن کاملHigh Assurance Software Development
The purpose of this paper is describe how to make software assurance a part of a science of security. Software assurance as practiced is a grab-bag of techniques, heuristics, and lessons learned from earlier failures. Given the importance of software to critical infrastructures (electricity, banking, medicine), this is an untenable situation; the smooth functioning of our society depends on thi...
متن کاملModel-Driven Software Development - Integrating Quality Assurance
“This book provides a comprehensive guide that will help researchers and practitioners in the model-driven software development area to avoid risks and project failures that are frequently encountered in traditional and agile software projects.” -Jörg Rech, Fraunhofer Institute for Experimental Software Engineering, Germany Edited by: Jorg Rech, Fraunhofer Institute for Experimental Software En...
متن کاملKnowledge Sharing Management Model (KSMM) for Software Development Outsourcing Vendors
Offshore software development outsourcing (OSDO) is an important paradigm in global software development. OSDO is a well known business strategy adopted by many organisations in developed countries by outsourcing their software development work to lowwages countries to get high quality software development at low cost. However outsourcing is not a risk free business. Vendor organisations need t...
متن کاملIntercultural Challenges Mitigation Model for Software Development Outsourcing Vendors
Offshore software development outsourcing (OSDO) is an emerging business approach adopted by many software development organisations in developed countries. However significant outsourcing failure rates have also been reported. One of the major issues in is cultural distance which should be taken into account by software outsourcing organisations (vendors) in order to develop high quality softw...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: IEEE Access
سال: 2022
ISSN: ['2169-3536']
DOI: https://doi.org/10.1109/access.2022.3178301