SecEval: An Evaluation Framework for Engineering Secure Systems
Zusammenfassung
Engineering secure software systems is not an easy task. Many methods, notations and tools - we call them knowledge objects - exist to support engineers in the development of such software. A main problem is the selection of appropriate knowledge objects. Therefore, we build the conceptual framework SECEVAL to support the evaluation and comparison of security features, vulnerabilities, methods, notations and tools. It provides an evaluation process and a model, which comprises concepts related to security context, data collection and data analysis. Our approach is validated by a case study in the area of security testing of web applications.
- Vollständige Referenz
- BibTeX
Busch, M., Koch, N. & Wirsing, M.,
(2014).
SecEval: An Evaluation Framework for Engineering Secure Systems.
In:
Fill, H.-G., Karagiannis, D. & Reimer, U.
(Hrsg.),
Modellierung 2014.
Bonn:
Gesellschaft für Informatik e.V..
(S. 337-352).
@inproceedings{mci/Busch2014,
author = {Busch, Marianne AND Koch, Nora AND Wirsing, Martin},
title = {SecEval: An Evaluation Framework for Engineering Secure Systems},
booktitle = {Modellierung 2014},
year = {2014},
editor = {Fill, Hans-Georg AND Karagiannis, Dimitris AND Reimer, Ulrich} ,
pages = { 337-352 },
publisher = {Gesellschaft für Informatik e.V.},
address = {Bonn}
}
author = {Busch, Marianne AND Koch, Nora AND Wirsing, Martin},
title = {SecEval: An Evaluation Framework for Engineering Secure Systems},
booktitle = {Modellierung 2014},
year = {2014},
editor = {Fill, Hans-Georg AND Karagiannis, Dimitris AND Reimer, Ulrich} ,
pages = { 337-352 },
publisher = {Gesellschaft für Informatik e.V.},
address = {Bonn}
}
Haben Sie fehlerhafte Angaben entdeckt? Sagen Sie uns Bescheid: Feedback abschicken
Mehr Information
ISBN: 978-388579-619-0
ISSN: 1617-5468
Datum: 2014
Sprache:
(en)
(en)
Typ: Text/Conference Paper

