Security requirements variability for software product lines

被引:2
作者
Mellado, Daniel [1 ]
Fernandez-Medina, Eduardo [2 ]
Piattini, Mario [2 ]
机构
[1] Ministry Work & Social Affairs, Social Secur IT Dept, Madrid, Spain
[2] Univ Castilla La Mancha, Informat Syst Technol Dept, Alarcos Res Grp, E-13071 Ciudad Real, Spain
来源
ARES 2008: PROCEEDINGS OF THE THIRD INTERNATIONAL CONFERENCE ON AVAILABILITY, SECURITY AND RELIABILITY | 2008年
关键词
D O I
10.1109/ARES.2008.165
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Software product line engineering has proven to be one of the most successful paradigms for developing a diversity of similar software applications and software-intensive systems at low costs, in short time, and with high quality, by exploiting commonalities and variabilities among products to achieve high levels of reuse. At the same time, due to the complexity and extensive nature of product line development, security and requirements engineering are critical success factors in the development of a software product line. However, most of the current product line practices in requirements engineering do not adequately address the security requirements engineering. Therefore, in this paper we will propose a security requirements decision model driven by security standards along with a security variability model to manage the variability of the security requirements related artefacts. The aim of this approach is to deal with security requirements from the early stages of the product line development in a systematic way, in order to facilitate the conformance to the most relevant security standards with regard to the management of security requirements, such as ISO/IEC 27001 and ISO/IEC 15408.
引用
收藏
页码:1413 / +
页数:3
相关论文
共 50 条
  • [41] Restructuring variability in software product lines using concept analysis of product configurations
    Loesch, Felix
    Ploedereder, Erhard
    CSMR 2007: 11TH EUROPEAN CONFERENCE ON SOFTWARE MAINTENANCE AND REENGINEERING, PROCEEDINGS: SOFWARE EVOLUTION IN COMPLEX SOFTWARE INTENSIVE SYSTEMS, 2007, : 159 - +
  • [42] Variability-intensive Software Systems: Product Lines and Beyond
    Galster, Matthias
    PROCEEDINGS OF THE 13TH INTERNATIONAL WORKSHOP ON VARIABILITY MODELLING OF SOFTWARE-INTENSIVE SYSTEMS (VAMOS '19), 2019,
  • [43] Variability Management in Dynamic Software Product Lines: A systematic mapping
    Guedes, Gabriela
    Silva, Carla
    Soares, Monique
    Castro, Jaelson
    PROCEEDINGS 2015 NINTH BRAZILIAN SYMPOSIUM ON SOFTWARE COMPONENTS, ARCHITECTURES AND REUSE - SBCARS 2015, 2015, : 90 - 99
  • [44] Modeling variability in software product lines with the variation point model
    Webber, DL
    Gomaa, H
    SCIENCE OF COMPUTER PROGRAMMING, 2004, 53 (03) : 305 - 331
  • [45] Managing variability in reusable requirement models for software product lines
    Gomaa, Hassan
    Olimpiew, Erika Mir
    HIGH CONFIDENCE SOFTWARE REUSE IN LARGE SYSTEMS, PROCEEDINGS, 2008, 5030 : 182 - 185
  • [46] Local features: Enhancing variability modeling in software product lines☆
    de Castro, David
    Cortinas, Alejandro
    Luaces, Miguel R.
    Pedreira, Oscar
    Saavedra Places, Angeles
    JOURNAL OF SYSTEMS AND SOFTWARE, 2024, 213
  • [47] CASE Tool Support for Variability Management in Software Product Lines
    Bashroush, Rabih
    Garba, Muhammad
    Rabiser, Rick
    Groher, Iris
    Botterweck, Goetz
    ACM COMPUTING SURVEYS, 2017, 50 (01)
  • [48] VML* - A Family of Languages for Variability Management in Software Product Lines
    Zschaler, Steffen
    Sanchez, Pablo
    Santos, Joao
    Alferez, Mauricio
    Rashid, Awais
    Fuentes, Lidia
    Moreira, Ana
    Araujo, Joao
    Kulesza, Uira
    SOFTWARE LANGUAGE ENGINEERING, 2010, 5969 : 82 - +
  • [49] Dynamically Evolving the Structural Variability of Dynamic Software Product Lines
    Baresi, Luciano
    Quinton, Clement
    2015 IEEE/ACM 10TH INTERNATIONAL SYMPOSIUM ON SOFTWARE ENGINEERING FOR ADAPTIVE AND SELF-MANAGING SYSTEMS, 2015, : 57 - 63
  • [50] Approach to modelling feature variability and dependencies in software product lines
    Ye, H
    Liu, H
    IEE PROCEEDINGS-SOFTWARE, 2005, 152 (03): : 101 - 109