2023
DOI: 10.26483/ijarcs.v14i1.6949
|View full text |Cite
|
Sign up to set email alerts
|

Secure Software Development Lifecycle: A Case for Adoption in Software Smes

Abstract: Software is widely deployed and used for managing critical daily domestic, social, and economic activities. Due to software’s economic value, software is a high-value target of malicious actors and a primary source of many information security vulnerabilities. Software must be engineered to be secure because of its value. Traditional approaches to software security treat software as an addon and have been proven inadequate at producing secure software. Practicing the secure software development lifecycle (SSDL… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1

Citation Types

0
5
0
4

Year Published

2023
2023
2024
2024

Publication Types

Select...
3
1

Relationship

0
4

Authors

Journals

citations
Cited by 4 publications
(9 citation statements)
references
References 35 publications
0
5
0
4
Order By: Relevance
“…The findings suggest that small and medium-sized enterprises (SMEs) may significantly enhance their software security without compromising agility or incurring prohibitive costs. This is crucial, given that small and medium-sized enterprises (SMEs) often work with limited resources and require finding a balance between security and other operational aspects of the business [28].…”
Section: A Secure Software Solutions For Sustainable Smesmentioning
confidence: 99%
See 1 more Smart Citation
“…The findings suggest that small and medium-sized enterprises (SMEs) may significantly enhance their software security without compromising agility or incurring prohibitive costs. This is crucial, given that small and medium-sized enterprises (SMEs) often work with limited resources and require finding a balance between security and other operational aspects of the business [28].…”
Section: A Secure Software Solutions For Sustainable Smesmentioning
confidence: 99%
“…Ultimately, the proposal by [31] for the adoption of the Secure Software Development Life Cycle (SSDLC) in software SMEs is a significant advancement. El SSDLC proporciona un enfoque sistemático para integrar medidas de seguridad en todas las fases del proceso de desarrollo de software.…”
Section: A Secure Software Solutions For Sustainable Smesunclassified
“…Is a systematic approach to integrating security into the software development process. Typically involves several phases, including requirements analysis, design, coding, testing, deployment, and maintenance [154]. Each phase incorporates security activities such as threat modelling, secure coding practices, security testing, and vulnerability management.…”
Section: Secure Development Lifecycle (Sdl)mentioning
confidence: 99%
“…Например, в финансовых организациях соблюдение сроков является острой проблемой, поскольку рынок финансовых услуг очень динамичный и резко меняется. Кроме того, в соответствии с принципами SSDL (Secure Software Development Lifecycle) [3] и требованиями регуляторов, каждая новая версия разработки ПО обязана проходить проверки ИБ на регулярной основе в рамках аудита защищенности различных АС и для решения задач по анализу отказоустойчивости. Для этого проводится фаззингтестирование (англ.…”
Section: Introductionunclassified
“…Вышеперечисленные решения могут быть эффективно встроены в процесс CI/CD[49], как DevSecOps[50] решения. Они могут использоваться на этапе разработки, тестирования или сопровождения, в соответствии с методологией SSDL[3]. Несмотря на то, что эти решения можно применять сразу ко всей микросервисной архитектуре, было выявлено, что при применении различных сканеров динамического анализа не обеспечивается полное покрытие АС проверками, поскольку сигнатурно, в составе таких решений, анализ производится в основном тестовыми запросами для поиска известных дефектов ИБ (CVE -Common Vulnerabilities and Exposures)[51].…”
unclassified