DoD Security Needs and COTS-Based Systems

نویسندگان

  • Scott A. Hissam
  • David Carney
  • Daniel Plakosh
چکیده

Government policies on the acquisition of software-intensive systems have recently undergone a significant shift in emphasis toward use of existing commercial products. Some Requests for Proposals (RFPs) now include a mandate concerning the amount of COTS (commercial off-the-shelf) products that must be included. This interest in COTS products is premised on a number of factors, not least of which is the spiraling cost of software. Given the current state of shrinking budgets and growing need, it is obvious to almost any observer that appropriate use of commercially available products is one of the remedies that might enable the government to acquire needed capabilities in a cost-effective manner. In systems where the use of existing commercial components is both possible and feasible, it is no longer acceptable for the government to specify, build, and maintain a large array of comparable proprietary products. However, like any solution to any problem, there are drawbacks as well as benefits: significant tradeoffs exist when embracing a commercial basis for the government's software systems. Thus, the policies that favor COTS usage must be implemented with an understanding of the complex set of impacts that stem from use of commercial products. Those implementing COTS products must also recognize the associated issues—system distribution, interface standards, legacy system reengineering, and so forth—with which a COTS-based approach must be integrated and balanced. In response to this need, a set of monographs is being prepared that addresses the use of COTS software in government systems. Each monograph will focus on a particular topic, for example: the types of systems that will most benefit from a COTS approach; guidelines about the hard tradeoffs made when incorporating COTS products into systems; recommended processes and procedures for integrating multiple commercial products; upgrade strategies for multiple vendors' systems; recommendations about when not to use a commercial approach. Since these issues have an impact on a broad community in DoD and other government agencies, and range from high-level policy questions to detailed technical questions, we have chosen this modular approach; an individual monograph can be brief and focused, yet still provide sufficient detail to be valuable. Integration and incorporation of COTS components into legacy and emerging systems has never been more attractive in the information industry. The COTS marketplace has become very competitive with the increased number of vendors and the increasing number of products offered. This, combined with ever increasing pressures to deliver systems sooner …

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Architecture and Components for Data Management Security: NRL Perspective

The DoD urgently needs system architectures that will permit the use of commercial off-theshelf technology (COTS), including database management systems, without making the system as a whole vulnerable to COTS shortcomings and defects. Practical architectures to meet this need will, we believe, assign security functions that require high assurance to separate, simple components, and use COTS co...

متن کامل

The Double-Edged COTS IT Sword

As government technical teams downsize and budgets shrink in tandem with an increasing demand for more complex systems, there is a rising interest in leveraging the use of commercial-off-the-shelf (COTS) products. In many cases, the use of COTS is mandated. Is it possible to over-emphasize the use of COTS products? For example, what checks would you expect prior to flying on a new aircraft with...

متن کامل

Simplex Architecture: Meeting the Challenges of Using COTS in High-Reliability Systems

April 1998 The Challenges To cut costs and gain leverage from technical advances in the commercial sector, the Department of Defense (DoD) has actively encouraged the more frequent use of commercial-offthe-shelf (COTS) components in its software systems. This DoD mandate challenges systems developers to integrate COTS components into systems without compromising the strict reliability and avail...

متن کامل

Title: Case Study: Net-centric Mission Thread Modeling and Analysis

ID: 5519 Title: Case Study: Net-Centric Mission Thread Modeling and Analysis Abstract Text: AbstractText: Abstract The US Defense Strategy requires delivering the critical enabling capability to conduct network-centric operations. This strategy, being implemented via DOD Global Information Grid (GIG) initiative, significantly increases the acquisition risks due to increased complexities for the...

متن کامل

Case Study: Evaluating COTS Products for DoD Information Systems

Government policies on the acquisition of software-intensive systems have recently undergone a significant shift in emphasis toward the use of existing commercial products. Some Requests for Proposals (RFPs) now include a mandate concerning the amount of COTS (commercial off-the-shelf) products that must be included. This interest in COTS products is based on a number of factors, not least of w...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 1998