INTEGRATING SOFTWARE ASSURANCE INTO THE SOFTWARE DEVELOPMENT LIFE CYCLE (SDLC)
@inproceedings{Dawson2010INTEGRATINGSA, title={INTEGRATING SOFTWARE ASSURANCE INTO THE SOFTWARE DEVELOPMENT LIFE CYCLE (SDLC)}, author={M. Dawson and D. N. Burrell and Emad Rahim and S. Brewster}, year={2010} }
This article examines the integration of secure coding practices into the overall Software Development Life Cycle (SDLC). Also detailed is a proposed methodology for integrating software assurance into the Department of Defense Information Assurance Certification & Accreditation Process (DIACAP). This method for integrating software assurance helps in properly securing the application layer as that is where more than half of the vulnerabilities lie in a system.
Topics from this paper
27 Citations
Reframing Security in Contemporary Software Development Life Cycle
- Computer Science
- 2018 IEEE International Conference on Technology Management, Operations and Decisions (ICTMOD)
- 2018
- 2
- Highly Influenced
Integration of Security Modules in Software Development Lifecycle Phases
- Computer Science
- ArXiv
- 2020
- PDF
Managing the Secure Software Development
- Computer Science
- 2019 10th IFIP International Conference on New Technologies, Mobility and Security (NTMS)
- 2019
- 2
Software quality assurance in scrum projects: a case study of development processes among scrum teams in South Africa
- Engineering
- 2015
- 3
Choosing the Best-fit Lifecycle Framework while Addressing Functionality and Security Issues
- Computer Science
- CATA
- 2019
- 1
- PDF
Towards Educational Guidelines for the Security Systems Engineer
- Engineering, Computer Science
- World Conference on Information Security Education
- 2018
- 4
References
SHOWING 1-5 OF 5 REFERENCES
Software Assurance Best Practices for Air Force Weapon and Information Technology Systems Are We Bleeding
- Engineering
- 2012
- 1
Secure software development-the role of it audit
- Information Systems Control Journal,
- 2008
The need for software security
- Retrieved from https://www.isc2.org/uploadedFiles/(ISC)2_Public_Content/Certification_Programs/CSSLP/CSSLP _WhitePaper.pdf
- 2008
The art of software security assessment
- 2007
Application services security technical implementation guide, Washington, DC: Defense Information Systems Agency
- Retrieved from http://iase.disa.mil/stigs/stig/application-services-stig-v1r1.pdf
- 2006