Adaption of a Secure Software Development Methodology for Secure Engineering Design

被引:11
|
作者
Von Solms, Sune [1 ]
Futcher, Lynn A. [2 ]
机构
[1] Univ Johannesburg, Dept Elect Engn Sci, ZA-2006 Johannesburg, South Africa
[2] Nelson Mandela Univ, Sch Informat Technol, ZA-6031 Port Elizabeth, South Africa
关键词
Engineering education; engineering design; security; secure software design;
D O I
10.1109/ACCESS.2020.3007355
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the rapid advancement of technologies in the era of Industry 4.0, the inter-connected nature of operations and systems is introducing a rapidly changing landscape of digitized and connected systems. Cybercrime is considered as possibly the greatest threat to connected systems worldwide, and therefore there exists a large drive in engineering to include cybersecurity in the design, development and maintenance of smart cyber-physical systems. Traditionally, the cybersecurity space was considered the responsibility of Information Technology (IT) professionals, where the greater IT infrastructure was required to keep these engineering systems safe. However, through the evolution of engineering and control systems, the IT infrastructure has started to become more integrated with these systems, improving the efficiency of the systems, but also making them more susceptible to cyber-attacks. These changes mean that securing these systems cannot remain the sole responsibility of the IT professionals, as systems must be designed with cybersecurity in mind. Considering that engineers are designing and developing more integrated systems, there exists a knowledge gap in the field of cybersecurity engineering and engineers' understanding of their cybersecurity responsibilities. This study aimed to determine the level of security that is currently considered in standard electrical engineering projects in a typical academic environment. This baseline serves as a motivation to develop a practical approach to assist engineering students in considering cybersecurity when developing engineering systems and products.
引用
收藏
页码:125630 / 125637
页数:8
相关论文
共 50 条
  • [1] Adaption of Integrated Secure Guide for Secure Software Development Lifecycle
    Lee, Ki-Hyun
    Park, Young B.
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2016, 10 (06): : 145 - 154
  • [2] A Secure Software Design Methodology
    Goel, Rajat
    Govil, Mahesh Chandra
    Singh, Girdhari
    2016 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2016, : 2484 - 2488
  • [3] A methodology for secure software design
    Fernandez, EB
    SERP'04: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING RESEARCH AND PRACTICE, VOLS 1 AND 2, 2004, : 130 - 136
  • [4] Secure Software Engineering for Agile Methodology Preliminary Investigation
    Ramadani, Luthfi
    Utama, Nur Ichsan
    2015 SECOND INTERNATIONAL CONFERENCE ON COMPUTING TECHNOLOGY AND INFORMATION MANAGEMENT (ICCTIM), 2015, : 134 - 139
  • [5] Towards a Methodology for the Development of Secure Cryptographic Software
    Braga, Alexandre
    Dahab, Ricardo
    PROCEEDINGS OF 2016 INTERNATIONAL CONFERENCE ON SOFTWARE SECURITY AND ASSURANCE (ICSSA), 2016, : 25 - 30
  • [6] Secure software engineering in devops and agile development
    Jaatun, Martin Gilje
    Cruzes, Daniela Soares
    CEUR Workshop Proceedings, 2017, 1977
  • [7] Incorporating database systems into a secure software development methodology
    Fernandez, Eduardo B.
    Jurjens, Jan
    Yoshioka, Nobukazu
    Washizaki, Hironori
    DEXA 2008: 19TH INTERNATIONAL CONFERENCE ON DATABASE AND EXPERT SYSTEMS APPLICATIONS, PROCEEDINGS, 2008, : 310 - +
  • [8] Teaching secure software engineering: Writing secure code
    Yu, Huiming
    Jones, Nadia
    Bullock, Gina
    Yuan, Xiaohong Yuan
    2011 7th Central and Eastern European Software Engineering Conference, CEE-SECR 2011, 2011,
  • [9] Secure software systems engineering: The secure Tropos approach
    Mouratidis H.
    Journal of Software, 2011, 6 (03) : 331 - 339
  • [10] An automation framework design for secure software development
    Mythily, M.
    Valarmathi, M. L.
    Durai, C. Anand Deva
    Rexie, J. A. M.
    JOURNAL OF SOFTWARE-EVOLUTION AND PROCESS, 2019, 31 (10)