語系:
繁體中文
English
說明(常見問題)
登入
回首頁
切換:
標籤
|
MARC模式
|
ISBD
Exploring Security Process Improvements for Integrating Security Tools within a Software Application Development Methodology
紀錄類型:
書目-語言資料,印刷品 : Monograph/item
正題名/作者:
Exploring Security Process Improvements for Integrating Security Tools within a Software Application Development Methodology/ Crispin R Jose.
作者:
Jose, Crispin R.,
面頁冊數:
1 electronic resource (163 pages)
附註:
Source: Dissertations Abstracts International, Volume: 82-02, Section: B.
Contained By:
Dissertations Abstracts International82-02B.
標題:
Computer science. -
電子資源:
http://pqdd.sinica.edu.tw/twdaoapp/servlet/advanced?query=28027177
ISBN:
9798662449275
Exploring Security Process Improvements for Integrating Security Tools within a Software Application Development Methodology
Jose, Crispin R.,
Exploring Security Process Improvements for Integrating Security Tools within a Software Application Development Methodology
[electronic resource] /Crispin R Jose. - 1 electronic resource (163 pages)
Source: Dissertations Abstracts International, Volume: 82-02, Section: B.
Cyber-attacks and security breaches are occurring more frequently against web applications on the Internet. The success of these malicious attacks stems from vulnerabilities in the web application that were not rectified before they were deployed to the Internet. As companies release more innovative web applications within short turnaround times, detecting and fixing security vulnerabilities is deemed critical, but not a priority. Consequently, cyber-attacks and security breaches continue to rise unabated. The purpose of this exploratory study was to explore security process improvements for integrating security tools within a software application development methodology. This exploratory study addressed the problem through a conceptual framework, exploring security process improvements for integrating security tools within a software application methodology that could detect and fix vulnerabilities early and help build secure software. Participants were purposively selected from the population of professionals who were members of the software security group and software developer groups in the LinkedIn professional site. Data for the study were collected from 11 participants who were software engineers, software security engineers, and software architects. Each participant answered 10 semi-structured, open-ended interview questions conducted through online Zoom conferencing. Thematic content analysis was the method used for analyzing the data, which involved closely examining data to identify common themes. The common themes were further synthesized into 5 major themes that included detect and fix vulnerabilities, educate software engineers on secure coding, empower software engineers to learn application security, automate security testing, and perform threat modeling.
English
ISBN: 9798662449275Subjects--Topical Terms:
573171
Computer science.
Subjects--Index Terms:
Penetration testing
Exploring Security Process Improvements for Integrating Security Tools within a Software Application Development Methodology
LDR
:03271nam a22003973i 4500
001
1172831
005
20260622113213.5
006
m o d
007
cr|nu||||||||
008
260803s2020 miu||||||m |||||||eng d
020
$a
9798662449275
035
$a
(MiAaPQD)AAI28027177
035
$a
AAI28027177
040
$a
MiAaPQD
$b
eng
$c
MiAaPQD
$e
rda
100
1
$a
Jose, Crispin R.,
$e
author.
$3
1503435
245
1 0
$a
Exploring Security Process Improvements for Integrating Security Tools within a Software Application Development Methodology
$c
Crispin R Jose.
$h
[electronic resource] /
264
1
$a
Ann Arbor :
$b
ProQuest Dissertations & Theses,
$c
2020
300
$a
1 electronic resource (163 pages)
336
$a
text
$b
txt
$2
rdacontent
337
$a
computer
$b
c
$2
rdamedia
338
$a
online resource
$b
cr
$2
rdacarrier
500
$a
Source: Dissertations Abstracts International, Volume: 82-02, Section: B.
500
$a
Advisors: Munkeby, Steven Committee members: Barker, Helen; Webb, James.
502
$b
D.C.S.
$c
Colorado Technical University
$d
2020.
520
#
$a
Cyber-attacks and security breaches are occurring more frequently against web applications on the Internet. The success of these malicious attacks stems from vulnerabilities in the web application that were not rectified before they were deployed to the Internet. As companies release more innovative web applications within short turnaround times, detecting and fixing security vulnerabilities is deemed critical, but not a priority. Consequently, cyber-attacks and security breaches continue to rise unabated. The purpose of this exploratory study was to explore security process improvements for integrating security tools within a software application development methodology. This exploratory study addressed the problem through a conceptual framework, exploring security process improvements for integrating security tools within a software application methodology that could detect and fix vulnerabilities early and help build secure software. Participants were purposively selected from the population of professionals who were members of the software security group and software developer groups in the LinkedIn professional site. Data for the study were collected from 11 participants who were software engineers, software security engineers, and software architects. Each participant answered 10 semi-structured, open-ended interview questions conducted through online Zoom conferencing. Thematic content analysis was the method used for analyzing the data, which involved closely examining data to identify common themes. The common themes were further synthesized into 5 major themes that included detect and fix vulnerabilities, educate software engineers on secure coding, empower software engineers to learn application security, automate security testing, and perform threat modeling.
546
$a
English
590
$a
School code: 1271
650
# 4
$a
Computer science.
$3
573171
653
# #
$a
Penetration testing
653
# #
$a
Secure software
653
# #
$a
Threat modeling
653
# #
$a
Vulnerability scanning
690
$a
0984
710
2 #
$a
Colorado Technical University.
$b
Computer Science.
$3
1179604
720
1
$a
Munkeby, Steven
$e
degree supervisor.
773
0 #
$t
Dissertations Abstracts International
$g
82-02B.
790
$a
1271
791
$a
D.C.S.
792
$a
2020
856
4 0
$u
http://pqdd.sinica.edu.tw/twdaoapp/servlet/advanced?query=28027177
筆 0 讀者評論
多媒體
評論
新增評論
分享你的心得
Export
取書館別
處理中
...
變更密碼[密碼必須為2種組合(英文和數字)及長度為10碼以上]
登入