Study of security request / requirement acquisition technique of Web application renewal time
-
- Mutsuo Noguchi
- Institute of Information Security
-
- Takao Okubo
- Institute of Information Security
-
- Hidehiko Tanaka
- Institute of Information Security
Bibliographic Information
- Other Title
-
- Webアプリケーション更改時のセキュリティ要求/要件獲得手法の検討
Search this article
Description
Recently, the Web site that is exposed to the Internet, unauthorized access is routinely performed. Along with it, the importance of information security measures has increased. However, that there are situations in which the purchaser is left to the discretion of the contractor security measures, measures that takes into account the security from the most upstream of the development process is not performed, have contributed to produce a vulnerability. Assuming confirmation of acceptance test, in order to reduce as much as possible the security knowledge that is required, we have considered an approach that extends the feature-based system security pattern. Thus, it is expected that it is possible to derive the security requirements in the ordering party. In this paper, we introduce the technique under consideration, shows the situation on the study approach for obtaining a security request / requirements for the Web application renewal time.
Journal
-
- IPSJ SIG Technical Reports
-
IPSJ SIG Technical Reports 2014 (4), 1-4, 2014-05-15
Information Processing Society of Japan (IPSJ)
- Tweet
Keywords
Details 詳細情報について
-
- CRID
- 1573105977668996864
-
- NII Article ID
- 110009772684
-
- NII Book ID
- AA12326962
-
- ISSN
- 09196072
-
- Text Lang
- ja
-
- Data Source
-
- CiNii Articles