SAFECode Whitepaper: Fundamental Practices for Secure Software Development 2nd Edition

SAFECode Whitepaper: Fundamental Practices for Secure Software Development 2nd Edition
复制标题

SAFECode 白皮书:安全软件开发的基本实践第二版

DOI:
--
复制
发表时间:
2014
期刊:
Information Security Solutions Europe
影响因子:
--
通讯作者:
Stacy Simpson
Stacy Simpson
中科院分区:
--
文献类型:
--
作者:
Stacy Simpson

文献摘要

被引文献

相似文献

对SAFECode成员使用的安全软件开发过程的审查表明,软件开发生命周期中的每个活动都有相应的安全实践,可以提高软件安全性,并适用于不同的环境。对这些供应商实践的检查加强了这样一种主张,即软件安全性必须在整个软件开发生命周期中得到解决,才能有效,而不是被视为一次性事件或检查表上的单个框。此外,这些安全方法目前正在SAFECode成员中实践,这证明了它们能够集成和适应现实世界的开发环境。
A review of the secure software development processes used by SAFECode members reveals that there are corresponding security practices for each activity in the software development lifecycle that can improve software security and are applicable across diverse environments. The examination of these vendor practices reinforces the assertion that software security must be addressed throughout the software development lifecycle to be effective and not treated as a one-time event or single box on a checklist. Moreover, these security methods are currently in practice among SAFECode members, a testament to their ability to be integrated and adapted into real-world development environments.