講演名 2013-05-31
A new approach to develop a dependable security case by combining real life security experiences (lessons learnt) with D-Case development process
,
PDFダウンロードページ PDFダウンロードページへ
抄録(和)
抄録(英) Our daily life reliance on software systems is growing for the purpose of convenience, efficiency, and security. Modern systems runs for long periods of time and are being constantly improved in service objectives and users' requirements under evolving technologies and changing regulations/standards. At the same time, these systems have become extremely complex. Dependability of these software systems cannot be achieved only by using conventional technologies, such as software processes and/or Formal Methods. It also needs software assurance case, which in this paper we refer to it as dependability (assurance) case or simply D-Case. Most often is the fact that D-Case (an extension form of assurance case) is most commonly associated with the safely aspect of dependability that covers the realm of dependable software application systems, embedded operating systems, information systems and so on. Because of this regard, safety cases are quite well known in comparison to other aspects of dependability like availability, integrity and confidentiality witch are all co-related to security. On the other hand, D-Case has never been used in security and therefore holds the motivation behind this paper. By combining our knowledge of networking system together with our research result on the issue of security, it was found that there is guidance available, and there have been some promising experiments on the creation of security cases, although these guidance and experiments are not well documented to cover the realm of information and industrial networking systems, which this paper is about.
キーワード(和)
キーワード(英) Assurance Case / D-Case / Security Case / Software Security / Networking System Security / Goal Structuring Notation / Security Engineering / Risk Management
資料番号 KBSE2013-8
発行日

研究会情報
研究会 KBSE
開催期間 2013/5/23(から1日開催)
開催地(和)
開催地(英)
テーマ(和)
テーマ(英)
委員長氏名(和)
委員長氏名(英)
副委員長氏名(和)
副委員長氏名(英)
幹事氏名(和)
幹事氏名(英)
幹事補佐氏名(和)
幹事補佐氏名(英)

講演論文情報詳細
申込み研究会 Knowledge-Based Software Engineering (KBSE)
本文の言語 ENG
タイトル(和)
サブタイトル(和)
タイトル(英) A new approach to develop a dependable security case by combining real life security experiences (lessons learnt) with D-Case development process
サブタイトル(和)
キーワード(1)(和/英) / Assurance Case
第 1 著者 氏名(和/英) / Vaise Patu
第 1 著者 所属(和/英)
Nagoya University
発表年月日 2013-05-31
資料番号 KBSE2013-8
巻番号(vol) vol.113
号番号(no) 71
ページ範囲 pp.-
ページ数 6
発行日