Hunting for Aardvarks: Can Software Security Be Measured? - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2012

Hunting for Aardvarks: Can Software Security Be Measured?

Résumé

When you are in charge of building software from the ground up, software security can be encouraged through the use of secure software development methodologies. However, how can you measure the security of a given piece of software that you didn’t write yourself? In other words, when looking at two executables, what does “a is more secure than b” mean? This paper examines some approaches to measuring software security, and reccommends that more organisations should employ the Building Security In Maturity Model (BSIMM).
Fichier principal
Vignette du fichier
978-3-642-32498-7_7_Chapter.pdf (159.92 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-01542432 , version 1 (19-06-2017)

Licence

Paternité

Identifiants

Citer

Martin Gilje Jaatun. Hunting for Aardvarks: Can Software Security Be Measured?. International Cross-Domain Conference and Workshop on Availability, Reliability, and Security (CD-ARES), Aug 2012, Prague, Czech Republic. pp.85-92, ⟨10.1007/978-3-642-32498-7_7⟩. ⟨hal-01542432⟩
40 Consultations
130 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More