31st EUROMICRO Conference on Software Engineering and Advanced Applications RUPSec : Extending Business Modeling and Requirements Disciplines of RUP for Developing Secure Systems Porto, Portugal August 30-September 03 ISBN: 0-7695-2431-1
Nowadays, one of the main challenges facing computer systems is increasing attacks and security threats against them. Therefore, capturing, analyzing, designing, developing and testing of security requirements have became an important issue in development of security-critical computing systems, such as banking, military and ecommerce systems. For developing every system, a process model is chosen. The Rational Unified Process (RUP) is one of the most popular and complete process models which has been used by developers in recent years. Our study and analysis has shown that RUP should be extended for developing security-critical systems. In this paper, we report our work on extending Business Modeling and Requirements disciplines of RUP for developing secure systems. We call this extended version of RUP as RUPSec. The proposed extensions in RUPSec are adding and integrating a number of Activities, Roles, and Artifacts to RUP in order to capture, document and model threats and security requirements.
Citation:
Pooya Jaferian, Golnaz Elahi, Mohammad Reza Ayatollahzadeh Shirazi, Babak Sadeghian, "RUPSec : Extending Business Modeling and Requirements Disciplines of RUP for Developing Secure Systems," euromicro, pp.232-239, 31st EUROMICRO Conference on Software Engineering and Advanced Applications, 2005 Usage of this product signifies your acceptance of the Terms of Use. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||