Towards agile security assurance

  • Authors:
  • Konstantin Beznosov;Philippe Kruchten

  • Affiliations:
  • University of British Columbia, Vancouver, BC, Canada;University of British Columbia, Vancouver, BC, Canada

  • Venue:
  • NSPW '04 Proceedings of the 2004 workshop on New security paradigms
  • Year:
  • 2004

Quantified Score

Hi-index 0.00

Visualization

Abstract

Agile development methodologies are gaining acceptance in the software industry. If they are to be used for constructing security-critical solutions, what do we do about assurance? This paper examines how conventional security assurance suits agile methodologies for developing software-intensive systems. It classifies security assurance methods and techniques with regards to their clash with agile development. Suggestions are made for alleviating mismatches between these two methods.