1 resultado para NBR ISO 14031
em Research Open Access Repository of the University of East London.
Filtro por publicador
- Acceda, el repositorio institucional de la Universidad de Las Palmas de Gran Canaria. España (2)
- AMS Tesi di Dottorato - Alm@DL - Università di Bologna (1)
- AMS Tesi di Laurea - Alm@DL - Università di Bologna (14)
- Andina Digital - Repositorio UASB-Digital - Universidade Andina Simón Bolívar (3)
- Aquatic Commons (12)
- Archive of European Integration (1)
- Archivo Digital para la Docencia y la Investigación - Repositorio Institucional de la Universidad del País Vasco (26)
- Aston University Research Archive (3)
- B-Digital - Universidade Fernando Pessoa - Portugal (2)
- Biblioteca de Teses e Dissertações da USP (1)
- Biblioteca Digital | Sistema Integrado de Documentación | UNCuyo - UNCUYO. UNIVERSIDAD NACIONAL DE CUYO. (1)
- Biblioteca Digital da Câmara dos Deputados (2)
- Biblioteca Digital da Produção Intelectual da Universidade de São Paulo (4)
- Biblioteca Digital de Teses e Dissertações Eletrônicas da UERJ (36)
- Bibloteca do Senado Federal do Brasil (2)
- BORIS: Bern Open Repository and Information System - Berna - Suiça (4)
- Brock University, Canada (12)
- Bulgarian Digital Mathematics Library at IMI-BAS (1)
- CaltechTHESIS (4)
- Cámara de Comercio de Bogotá, Colombia (11)
- Cambridge University Engineering Department Publications Database (10)
- CentAUR: Central Archive University of Reading - UK (4)
- Chinese Academy of Sciences Institutional Repositories Grid Portal (91)
- CiencIPCA - Instituto Politécnico do Cávado e do Ave, Portugal (7)
- Cochin University of Science & Technology (CUSAT), India (44)
- Comissão Econômica para a América Latina e o Caribe (CEPAL) (9)
- CORA - Cork Open Research Archive - University College Cork - Ireland (2)
- Dalarna University College Electronic Archive (1)
- Department of Computer Science E-Repository - King's College London, Strand, London (1)
- Digital Commons - Michigan Tech (1)
- DigitalCommons@The Texas Medical Center (1)
- Doria (National Library of Finland DSpace Services) - National Library of Finland, Finland (3)
- eResearch Archive - Queensland Department of Agriculture; Fisheries and Forestry (3)
- FAUBA DIGITAL: Repositorio institucional científico y académico de la Facultad de Agronomia de la Universidad de Buenos Aires (2)
- FUNDAJ - Fundação Joaquim Nabuco (1)
- Funes: Repositorio digital de documentos en Educación Matemática - Colombia (1)
- Gallica, Bibliotheque Numerique - Bibliothèque nationale de France (French National Library) (BnF), France (4)
- Greenwich Academic Literature Archive - UK (1)
- Helda - Digital Repository of University of Helsinki (40)
- Illinois Digital Environment for Access to Learning and Scholarship Repository (1)
- Indian Institute of Science - Bangalore - Índia (46)
- Infoteca EMBRAPA (4)
- INSTITUTO DE PESQUISAS ENERGÉTICAS E NUCLEARES (IPEN) - Repositório Digital da Produção Técnico Científica - BibliotecaTerezine Arantes Ferra (3)
- Instituto Politécnico de Leiria (2)
- Instituto Politécnico do Porto, Portugal (28)
- Lume - Repositório Digital da Universidade Federal do Rio Grande do Sul (15)
- Martin Luther Universitat Halle Wittenberg, Germany (1)
- Massachusetts Institute of Technology (1)
- Memoria Académica - FaHCE, UNLP - Argentina (3)
- Ministerio de Cultura, Spain (7)
- National Center for Biotechnology Information - NCBI (2)
- Portal de Revistas Científicas Complutenses - Espanha (4)
- Publishing Network for Geoscientific & Environmental Data (11)
- QSpace: Queen's University - Canada (1)
- QUB Research Portal - Research Directory and Institutional Repository for Queen's University Belfast (43)
- Queensland University of Technology - ePrints Archive (48)
- RDBU - Repositório Digital da Biblioteca da Unisinos (5)
- Repositório Aberto da Universidade Aberta de Portugal (1)
- REPOSITÓRIO ABERTO do Instituto Superior Miguel Torga - Portugal (1)
- Repositorio Académico de la Universidad Nacional de Costa Rica (2)
- Repositório Alice (Acesso Livre à Informação Científica da Embrapa / Repository Open Access to Scientific Information from Embrapa) (2)
- Repositório Científico da Universidade de Évora - Portugal (1)
- Repositório Científico do Instituto Politécnico de Lisboa - Portugal (5)
- Repositório digital da Fundação Getúlio Vargas - FGV (8)
- Repositório Institucional da Universidade de Aveiro - Portugal (7)
- Repositório Institucional da Universidade de Brasília (1)
- Repositorio Institucional de la Universidad de El Salvador (15)
- Repositorio Institucional de la Universidad Pública de Navarra - Espanha (1)
- Repositório Institucional UNESP - Universidade Estadual Paulista "Julio de Mesquita Filho" (51)
- Repositorio Institucional UNISALLE - Colombia (6)
- Repositorio Institucional Universidad Católica de Colombia (10)
- Repositorio Institucional Universidad de Medellín (1)
- Research Open Access Repository of the University of East London. (1)
- RU-FFYL. Repositorio de la Facultad de Filosofiía y Letras. UNAM. - Mexico (1)
- RUN (Repositório da Universidade Nova de Lisboa) - FCT (Faculdade de Cienecias e Technologia), Universidade Nova de Lisboa (UNL), Portugal (8)
- SAPIENTIA - Universidade do Algarve - Portugal (9)
- SerWisS - Server für Wissenschaftliche Schriften der Fachhochschule Hannover (2)
- Universidad Autónoma de Nuevo León, Mexico (24)
- Universidad de Alicante (2)
- Universidad del Rosario, Colombia (38)
- Universidad Politécnica de Madrid (13)
- Universidade de Lisboa - Repositório Aberto (4)
- Universidade Federal do Pará (2)
- Universidade Federal do Rio Grande do Norte (UFRN) (17)
- Universidade Técnica de Lisboa (1)
- Universitat de Girona, Spain (10)
- Universitätsbibliothek Kassel, Universität Kassel, Germany (2)
- Université de Lausanne, Switzerland (1)
- Université de Montréal (1)
- Université de Montréal, Canada (23)
- University of Michigan (3)
- University of Queensland eSpace - Australia (2)
- WestminsterResearch - UK (2)
Resumo:
Building secure systems is difficult for many reasons. This paper deals with two of the main challenges: (i) the lack of security expertise in development teams, and (ii) the inadequacy of existing methodologies to support developers who are not security experts. The security standard ISO 14508 (Common Criteria) together with secure design techniques such as UMLsec can provide the security expertise, knowledge, and guidelines that are needed. However, security expertise and guidelines are not stated explicitly in the Common Criteria. They are rather phrased in security domain terminology and difficult to understand for developers. This means that some general security and secure design expertise are required to fully take advantage of the Common Criteria and UMLsec. In addition, there is the problem of tracing security requirements and objectives into solution design,which is needed for proof of requirements fulfilment. This paper describes a security requirements engineering methodology called SecReq. SecReq combines three techniques: the Common Criteria, the heuristic requirements editorHeRA, andUMLsec. SecReqmakes systematic use of the security engineering knowledge contained in the Common Criteria and UMLsec, as well as security-related heuristics in the HeRA tool. The integrated SecReq method supports early detection of security-related issues (HeRA), their systematic refinement guided by the Common Criteria, and the ability to trace security requirements into UML design models. A feedback loop helps reusing experiencewithin SecReq and turns the approach into an iterative process for the secure system life-cycle, also in the presence of system evolution.