Measuring the interplay of security principles in software architectures

  • Authors:
  • Koen Buyens;Riccardo Scandariato;Wouter Joosen

  • Affiliations:
  • IBBT-Distrinet, Katholieke Universiteit Leuven, Leuven, Belgium;IBBT-Distrinet, Katholieke Universiteit Leuven, Leuven, Belgium;IBBT-Distrinet, Katholieke Universiteit Leuven, Leuven, Belgium

  • Venue:
  • ESEM '09 Proceedings of the 2009 3rd International Symposium on Empirical Software Engineering and Measurement
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

Security principles like least privilege and attack surface reduction play an important role in the architectural phase of security engineering processes. However, the interplay between these principles and the side effects of the application of these secure design strategies on architectural qualities like maintainability have not been studied so far. Therefore it is hard to make informed trade-off decisions between security principles and between security and other qualities. This paper tackles this problem from a quantitative perspective by presenting the experimental results in the context of three case studies.