2016
DOI: 10.5121/ijsea.2016.7304
|View full text |Cite
|
Sign up to set email alerts
|

A Review of Security Integration Technique in Agile Software Development

Abstract: Agile software development has gained a lot of popularity in the software industry due to its iterative and incremental approach as well as user involvement. Agile has also been criticized due to lack of its ability to deliver secure software. In this paper, extensive literature has been performed, in order to highlight the existing security issues in agile software development. Majority of challenges reported in literature, occurred due to lack of involvement of security expert. Improving security of a softwa… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
3
1
1

Citation Types

0
7
0

Year Published

2018
2018
2024
2024

Publication Types

Select...
3
2
1

Relationship

0
6

Authors

Journals

citations
Cited by 14 publications
(7 citation statements)
references
References 18 publications
0
7
0
Order By: Relevance
“…As already stated in the introduction, security requirements are often neglected in agile projects [19,15]. A study of practitioners' posts on LinkedIn [26] shed some light on why this is the case: "People do care about security, but do not think about it", "Security requirements are often poorly defined and owned", "Security requirements get often delivered in the last minute" and "Agile techniques are vulnerable for forgetting things like security."…”
Section: Security Requirements In Agile Software Developmentmentioning
confidence: 99%
See 2 more Smart Citations
“…As already stated in the introduction, security requirements are often neglected in agile projects [19,15]. A study of practitioners' posts on LinkedIn [26] shed some light on why this is the case: "People do care about security, but do not think about it", "Security requirements are often poorly defined and owned", "Security requirements get often delivered in the last minute" and "Agile techniques are vulnerable for forgetting things like security."…”
Section: Security Requirements In Agile Software Developmentmentioning
confidence: 99%
“…One obvious reason for the decline in future use intention, especially concerning questions 1 and 2 where the biggest decline is observed, is the requirement to use Protection Poker in the course, something that will not be the case for any future projects the students encounter. In the end, half (15) of the students agree that they would like to use Protection Poker in the future, while only 5 respond not wanting to use Protection Poker (question 4).…”
Section: Longed Formentioning
confidence: 99%
See 1 more Smart Citation
“…If security is incorporated during all phases of SDLC then the resultant product will not be vulnerable to security threats. This is only possible if a secure SDLC process is followed, secure SDLC ensures that security-related activities are an integral part of the overall development effort [13][14][15][16].…”
Section: Introductionmentioning
confidence: 99%
“…Agile development methods have gained widespread adoption in the software industry, and agile methods are now used for all types of software development and for various types of systems, including very large development projects (Dingsøyr et al, 2018). Current evidence shows that security work is often neglected in agile projects (Oueslati et al, 2015, Terpstra et al, 2017, Khaim et al, 2016, Tøndel et al, 2017, and that teams generally do not estimate security risks in an ongoing manner to inform the security requirements work (Tøndel et al, 2017). Risk management is important for making decisions on security activities in agile development, since full security analysis in every sprint is not possible (Oueslati et al, 2015).…”
Section: Introductionmentioning
confidence: 99%