Design and Development of Security Services Using Security Patterns and Microservices Security Practices

Saridraj Sapsin, Nakornthip Prompoon · 2025

Security is a critical aspect of software development, particularly in the context of microservices architecture. Microservices, with their distributed nature, often involve independent databases and inter-service communications, which introduces potential security vulnerabilities. This article proposes a methodology for designing and developing security microservices by leveraging 5 security patterns mapped to 28 security practices for microservices design and implementation. The methodology is organized into 3 main processes: (1) defining security patterns and mapping them to security practices for specifying requirements for design and implementation, (2) designing the system architecture, and system functional, structural, and behavioral model based on requirements and design principles, (3) implementing security-focused microservices from the proposed design. Finally, the application of security microservices is performed by integrating them with an Out Patient Department (OPD) system to validate the effectiveness of the security microservices design and implementation.

Read the paper · More papers on PaperTik