O2 Muu julkaisu
Fitting Security into Agile Software Development
Tekijät: Rindell Kalle, Hyrynsalmi Sami, Leppänen Ville
Kustantaja: IGI Global
Julkaisuvuosi: 2021
Kokoomateoksen nimi: Research Anthology on Recent Trends, Tools, and Implications of Computer Programming
Aloitussivu: 1026
Lopetussivu: 1045
Sivujen määrä: 20
ISBN: 978-1-79983-016-0
DOI: https://doi.org/10.4018/978-1-7998-3016-0.ch047
Verkko-osoite: https://www.igi-global.com/chapter/fitting-security-into-agile-software-development/261067
Security objectives in software development are increasingly convergent
with the business objectives, as requirements for privacy and the cost
of security incidents call for more dependable software products. The
development of secure software is accomplished by augmenting the
software development process with specific security engineering
activities. Security engineering, in contrast to the iterative and
incremental software development processes, is characterized by
sequential life cycle models: the security objectives are thus to be
achieved by conflicting approaches. In this study, to identify the
incompatibilities between the approaches, the security engineering
activities from Microsoft SDL, the ISO Common Criteria and OWASP SAMM
security engineering models are mapped into common agile software
development processes, practices and artifacts.