Software security metric identification framework (SSM)

Shalini Chandra, Raees Ahmad Khan · 2009

Security improvement is the foremost concern for both industry professional and academician. Measurement is one of the most powerful techniques to control an activity. Experts are continuously trying to explore the importance of design knowledge of security. Security of object-oriented software is highly dependent on software design. In order to achieve the security, a metric to quantify the same may be used. Security metrics are high-level quantifiable measures. In order to quantify security, security metric suite is required. Several security models, security metrics, and object-oriented metrics are available in literature. But most of the metric available in literature is not validated and hence are unutilized or under utilized. In absence of any standard framework identifying validated and reliable metric, it seems to be worthwhile developing a viable framework for the development of security metric. The framework proposed in this paper, provides a systematic way to identify security metric suite and if unavailable, develop a validated design security metric

Read the paper · More papers on PaperTik