Inicio  /  Applied Sciences  /  Vol: 13 Par: 7 (2023)  /  Artículo
ARTÍCULO
TITULO

Identifying Key Activities, Artifacts and Roles in Agile Engineering of Secure Software with Hierarchical Clustering

An?e Mihelic    
Toma? Hovelja and Simon Vrhovec    

Resumen

Different activities, artifacts, and roles can be found in the literature on the agile engineering of secure software (AESS). The purpose of this paper is to consolidate them and thus identify key activities, artifacts, and roles that can be employed in AESS. To gain initial sets of activities, artifacts, and roles, the literature was first extensively reviewed. Activities, artifacts, and roles were then cross-evaluated with similarity matrices. Finally, similarity matrices were converted into distance matrices, enabling the use of Ward?s hierarchical clustering method for consolidating activities, artifacts, and roles into clusters. Clusters of activities, artifacts, and roles were then named as key activities, artifacts, and roles. We identified seven key activities (i.e., security auditing, security analysis and testing, security training, security prioritization and monitoring, risk management, security planning and threat modeling; and security requirements engineering), five key artifacts (i.e., security requirement artifacts, security repositories, security reports, security tags, and security policies), and four key roles (i.e., security guru, security developer, penetration tester, and security team) in AESS. The identified key activities, artifacts, and roles can be used by software development teams to improve their software engineering processes in terms of software security.

 Artículos similares

       
 
Joana Carneiro, Dália Loureiro, Marta Cabral and Dídia Covas    
This paper presents and demonstrates a novel scenario-building methodology that integrates contextual and future time uncertainty into the performance assessment of water distribution networks (WDNs). A three-step approach is proposed: (i) System context... ver más
Revista: Water

 
Marikka Heikkilä, Heidi Himmanen, Olli Soininen, Sanna Sonninen and Jukka Heikkilä    
The maritime industry is rapidly evolving with digital technologies, aiming to enhance efficiency, safety, and sustainability. Recent interest has focused on autonomous vessels and the digitalization of ports, yet fairway development has lagged behind. T... ver más

 
Andra Sandu, Ioana Ioana?, Camelia Delcea, Margareta-Stela Florescu and Liviu-Adrian Cotfas    
Fake news is an explosive subject, being undoubtedly among the most controversial and difficult challenges facing society in the present-day environment of technology and information, which greatly affects the individuals who are vulnerable and easily in... ver más
Revista: Algorithms

 
Kultigin Demirlioglu and Emrah Erduran    
Bridges serve as vital engineering structures crafted to facilitate secure and effective transportation networks. Throughout their life-cycle, they withstand various factors, including diverse environmental conditions, natural hazards, and substantial lo... ver más
Revista: Applied Sciences

 
Daniel Einarson, Fredrik Frisk, Kamilla Klonowska and Charlotte Sennersten    
Machine learning (ML) is increasingly used in diverse fields, including animal behavior research. However, its application to ambiguous data requires careful consideration to avoid uncritical interpretations. This paper extends prior research on ringed m... ver más
Revista: Applied Sciences