首页> 外文会议>Computer security >Understanding Challenges to Adoption of the Protection Poker Software Security Game
【24h】

Understanding Challenges to Adoption of the Protection Poker Software Security Game

机译:了解采用保护扑克软件安全游戏的挑战

获取原文
获取原文并翻译 | 示例

摘要

Currently, security requirements are often neglected in agile projects. Despite many approaches to agile security requirements engineering in literature, there is little empirical research available on why there is limited adoption of these techniques. In this paper we describe a case study on challenges facing adoption of the Protection Poker game; a collaborative and lightweight software security risk estimation technique that is particularly suited for agile teams. Results show that Protection Poker has the potential to be adopted by agile teams. Key benefits identified include good discussions on security and the development project, increased knowledge and awareness of security, and contributions to security requirements. Challenges include managing discussions and the time it takes to play, ensuring confidence in the results from playing the game, and integrating results in a way that improves security of the end-product.
机译:当前,敏捷项目中经常忽略安全要求。尽管文献中有许多方法可以用于敏捷安全需求工程,但是很少有关于为什么采用这些技术的经验研究很少。在本文中,我们描述了采用保护性扑克游戏面临的挑战的案例研究;一种协作且轻量级的软件安全风险评估技术,特别适合敏捷团队。结果表明,Protection Poker具有被敏捷团队采用的潜力。确定的主要好处包括就安全性和开发项目进行了良好的讨论,对安全性的了解和认识提高以及对安全性要求的贡献。挑战包括管理讨论和花费时间,确保对玩游戏的结果充满信心,以及以提高最终产品安全性的方式集成结果。

著录项

  • 来源
    《Computer security》|2018年|153-172|共20页
  • 会议地点 Barcelona(ES)
  • 作者单位

    Department of Computer Science, Norwegian University of Science and Technology (NTNU), 7491 Trondheim, Norway,Department of Software Engineering, Safety and Security, SINTEF Digital, 7465 Trondheim, Norway;

    Department of Software Engineering, Safety and Security, SINTEF Digital, 7465 Trondheim, Norway;

    Department of Software Engineering, Safety and Security, SINTEF Digital, 7465 Trondheim, Norway;

    Department of Software Engineering, Safety and Security, SINTEF Digital, 7465 Trondheim, Norway;

  • 会议组织
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号