Software Security and SOA: Danger, Will Robinson!

  • Authors:
  • Jeremy Epstein;Scott Matsumoto;Gary McGraw

  • Affiliations:
  • webMethods;Cigital;Cigital

  • Venue:
  • IEEE Security and Privacy
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

The current buzzword of choice among the technical elite (at least those subject to marketing departments) is service-oriented architecture, or SOA (pronounced "SO-uh"). As SOA moves from hype to practice, an opportunity exists to do security right, but a similar opportunity exists for disaster if security is done wrong. This article describes 13 snares that we must avoid to end up with SOA security that makes sense.