Security Estimation Framework: Design Phase Perspective

Shalini Chandra, Raees Ahmad Khan, Alka Bani Agrawal · 2009

Generally, security analysis process is carried out through subjective evaluations. Early methods of security attribute analysis emphasizes on codes, models and policies. An exhaustive review on software security estimation revealed the fact that there is no standard methodology available to assess software security quantitatively. In absence of any guideline, it is worthwhile developing a prescriptive framework in order to quantify software security. This paper proposes a framework to estimate software security in early stage of software development life cycle. A phase wise sequential approach presented in the paper helps security professionals to estimate security and mitigate vulnerability in design phase.

Read the paper · More papers on PaperTik