Security Compliance in Model-driven Development of Software Systems in Presence of Long-Term Evolution and Variants

Sven Matthias Peldszus

Informasi Dasar

43 kali
23.21.1523
005.8
Buku - Elektronik (E-Book)
Tel-U Gedung Manterawu Lantai 5 : Rak 4
Tel-U Purwokerto : Rak 2

For ensuring a software system's security, it is vital to keep up with changing security precautions, attacks, and mitigations. Although model-based development enables addressing security already at design-time, design models are often inconsistent with the implementation or among themselves. An additional burden are variants of software systems. To ensure security in this context, we present an approach based on continuous automated change propagation, allowing security experts to specify security requirements on the most suitable system representation. We automatically check all system representations against these requirements and provide security-preserving refactorings for preserving security compliance. For both, we show the application to variant-rich software systems. To support legacy systems, we allow to reverse-engineer variability-aware UML models and semi-automatically map existing design models to the implementation. Besides evaluations of the individual contributions, we demonstrate the approach in two open-source case studies, the iTrust electronics health records system and the Eclipse Secure Storage.

Subjek

DATA SECURITY
 

Katalog

Security Compliance in Model-driven Development of Software Systems in Presence of Long-Term Evolution and Variants
978-3-658-37665-9
476p.: pdf file.; 11,8 MB
English

Sirkulasi

Rp. 0
Rp. 0
Tidak

Pengarang

Sven Matthias Peldszus
Perorangan
 
 

Penerbit

Springer Cham
New York
2022

Koleksi

Kompetensi

 

Download / Flippingbook

 

Ulasan

Belum ada ulasan yang diberikan
anda harus sign-in untuk memberikan ulasan ke katalog ini