Web application development model with security concern in the entire life-cycle

Musa Bala Shuaibu, Ruqayyat Ahmad Ibrahim · 2017

e-commerce involves a great deal of credit cards, fund transfers, web shopping, and other forms of transmitting private information that needs to remain secure. Although, the knowledge of how to develop a secure e-commerce application is known, the major concern is the insufficiency of the right developmental model and practice. The use of inappropriate methodology in developing an e-commerce application can seriously undermine organizations' confidentiality and integrity. Having said that, many of the web application development models may have some kind of security considerations that may not be applied across the entire Web Application Development Life-cycle. This is unfortunate. This study proposes a web application development model that inculcates security considerations across the Web Application Development Life-cycle which can be adapted by security critical applications like the e-commerce sites. The implementation and evaluation of this proposed model, with previous web application security development models, have shown that a 96 percent security level is achieved, despite some four percent failures. The failures are of information severity status, which are not typically critical to the security of the underlying application.

Read the paper · More papers on PaperTik