Towards a Secure Agile Software Development Process

S. H. Adelyar, A. Norta
{"title":"Towards a Secure Agile Software Development Process","authors":"S. H. Adelyar, A. Norta","doi":"10.1109/QUATIC.2016.028","DOIUrl":null,"url":null,"abstract":"Agile methodologies such as scrum and Extreme Programming (XP) are efficient development processes by accepting changes at any phase and delivering software quickly to customers. However, these methodologies have been criticized because of the unavailability of security as an important quality goal of software systems. Although, there are pre-existing research results on this topic, there is no established approach for identifying security challenges of agile practices. Specifically, we analyze agile practices to find the security challenges in customer-and developer activities during software development. Identifying these challenges helps the secure development of software using agile practices. Our case study based results show that a number of developer-and customer activities result in security flaws and vulnerabilities for the software.","PeriodicalId":157671,"journal":{"name":"2016 10th International Conference on the Quality of Information and Communications Technology (QUATIC)","volume":"79 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-09-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"17","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2016 10th International Conference on the Quality of Information and Communications Technology (QUATIC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/QUATIC.2016.028","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 17

Abstract

Agile methodologies such as scrum and Extreme Programming (XP) are efficient development processes by accepting changes at any phase and delivering software quickly to customers. However, these methodologies have been criticized because of the unavailability of security as an important quality goal of software systems. Although, there are pre-existing research results on this topic, there is no established approach for identifying security challenges of agile practices. Specifically, we analyze agile practices to find the security challenges in customer-and developer activities during software development. Identifying these challenges helps the secure development of software using agile practices. Our case study based results show that a number of developer-and customer activities result in security flaws and vulnerabilities for the software.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
迈向安全的敏捷软件开发过程
敏捷方法,如scrum和极限编程(XP),通过接受任何阶段的更改并快速向客户交付软件,是有效的开发过程。然而,这些方法由于不能将安全性作为软件系统的重要质量目标而受到批评。尽管在这个主题上已有研究成果,但是还没有确定敏捷实践的安全挑战的既定方法。具体来说,我们将分析敏捷实践,以发现软件开发过程中客户和开发人员活动中的安全挑战。识别这些挑战有助于使用敏捷实践进行安全的软件开发。我们基于案例研究的结果表明,许多开发人员和客户活动会导致软件的安全缺陷和漏洞。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
A Customizable Approach for the Automated Quality Assessment of Modelling Artifacts A Process Framework with Agile Practices for Implementation of Project Portfolio Management Process Towards a Model about Quality of Software Requirements Specification in Agile Projects Expressing Measurement Uncertainty in Software Models Adopting Logical Architectures within Agile Projects
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1