Integrating Security and Privacy in HCD-Scrum

M. T. Baldassarre, Vita Santa Barletta, D. Caivano, A. Piccinno
{"title":"Integrating Security and Privacy in HCD-Scrum","authors":"M. T. Baldassarre, Vita Santa Barletta, D. Caivano, A. Piccinno","doi":"10.1145/3464385.3464746","DOIUrl":null,"url":null,"abstract":"Nowadays, software development must face the challenge of integrating security and privacy elements from the earliest stages of any software development process. A correct and complete implementation starting from the requirements definition allows to significantly increase the security level of each single phase/iteration and consequently of the final system. Therefore, it is necessary to support the team throughout the software lifecycle trying to provide operational guidelines of security by design and privacy by design. Taking these aspects into account, the paper presents a Human Centered Design (HCD) approach of security and privacy-oriented software development, integrated within the Scrum agile methodology, defined as HCD-Security Scrum. The goal is to support developer decisions at all stages of software development in integrating security and privacy requirements through the formalization of key elements defined in a knowledge base, i.e., the Privacy Knowledge Base.","PeriodicalId":221731,"journal":{"name":"CHItaly 2021: 14th Biannual Conference of the Italian SIGCHI Chapter","volume":"9 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-07-11","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"8","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"CHItaly 2021: 14th Biannual Conference of the Italian SIGCHI Chapter","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/3464385.3464746","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 8

Abstract

Nowadays, software development must face the challenge of integrating security and privacy elements from the earliest stages of any software development process. A correct and complete implementation starting from the requirements definition allows to significantly increase the security level of each single phase/iteration and consequently of the final system. Therefore, it is necessary to support the team throughout the software lifecycle trying to provide operational guidelines of security by design and privacy by design. Taking these aspects into account, the paper presents a Human Centered Design (HCD) approach of security and privacy-oriented software development, integrated within the Scrum agile methodology, defined as HCD-Security Scrum. The goal is to support developer decisions at all stages of software development in integrating security and privacy requirements through the formalization of key elements defined in a knowledge base, i.e., the Privacy Knowledge Base.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
在HCD-Scrum中集成安全和隐私
如今,软件开发必须从任何软件开发过程的最初阶段就面临集成安全性和隐私元素的挑战。从需求定义开始的正确和完整的实现可以显著地提高每个阶段/迭代的安全级别,从而提高最终系统的安全级别。因此,有必要在整个软件生命周期中支持团队,尝试通过设计提供安全性和隐私性的操作指南。考虑到这些方面,本文提出了一种以人为中心的设计(HCD)方法,用于面向安全和隐私的软件开发,该方法集成在Scrum敏捷方法中,定义为HCD- security Scrum。目标是通过在知识库(即隐私知识库)中定义的关键元素的形式化,在软件开发的所有阶段支持开发人员在集成安全性和隐私需求方面的决策。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
Boris: a Spoken Conversational Agent for Music Production for People with Motor Disabilities Designing for/with/around Nature: Exploring new Frontiers of Outdoor-related HCI Complementing Studies on Vulnerable Youths with Reddit Data At the Frontiers of Art and IoT: the IoTgo Toolkit as a Probe for Artists Design of a Recommender System for Video Games based on In-Game Player Profiling and Activities
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1