Understanding Software Security from Design to Deployment

Understanding Software Security from Design to Deployment
复制标题

了解从设计到部署的软件安全性

DOI:
10.1145/3385678.3385687
复制
发表时间:
2020
期刊:
ACM SIGSOFT Software Engineering Notes
影响因子:
--
通讯作者:
Williams, Laurie
Williams, Laurie
中科院分区:
--
文献类型:
--
作者:
Mirakhorli, Mehdi;Galster, Matthias;Williams, Laurie

文献摘要

被引文献

相似文献

分析、实施和维护软件密集型系统的安全需求,实现真正安全的软件,需要从头开始规划安全性,并持续确保在整个软件生命周期内,甚至在软件发展部署之后,都能保持安全性。考虑到软件系统的复杂性不断增加,新的应用领域,动态和经常关键的操作条件,许多软件系统的分布式特性,以及对软件供应商施加压力的快速移动的市场,从头开始构建安全系统变得更具挑战性。与安全相关的问题以前一直是软件工程子社区和场所的目标。在2020年自动化软件工程国际会议(ASE)上举办的第二届从设计到部署的安全性国际研讨会(SEAD)中,我们旨在将需求工程师,安全专家,架构师,开发人员和测试人员的研究和实践者社区聚集在一起,以确定基础和挑战,并制定与自动化分析,设计,安全软件系统的实施、测试和维护。
Analyzing, implementing and maintaining security requirements of software-intensive systems and achieving truly secure software requires planning for security from ground up, and continuously assuring that security is maintained across the software's lifecycle and even after deployment when software evolves. Given the increasing complexity of software systems, new application domains, dynamic and often critical operating conditions, the distributed nature of many software systems, and fast moving markets which put pressure on software vendors, building secure systems from ground up becomes even more challenging. Security-related issues have previously been targeted in software engineering sub-communities and venues. In the second edition of the International Workshop on Security from Design to Deployment (SEAD) at the International Conference on Automated Software Engineering (ASE) 2020, we aimed to bring the research and practitioner communities of requirements engineers, security experts, architects, developers, and testers together to identify foundations, and challenges, and to formulate solutions related to automating the analysis, design, implementation, testing, and maintenance of secure software systems.