When Software Engineering meets Cybersecurity at the classroom

被引:2
作者
Gonzalez, Hugo [1 ]
Llamas-Contreras, Rafael [1 ]
Montano-Rivas, Omar [1 ]
机构
[1] Univ Politecn San Luis Potosi, Acad Tecnol Informac & Telemat, San Luis Potosi, San Luis Potosi, Mexico
来源
2019 7TH INTERNATIONAL CONFERENCE IN SOFTWARE ENGINEERING RESEARCH AND INNOVATION (CONISOFT 2019) | 2019年
关键词
Software Engineering; Cybersecurity; Teaching; SECURE SOFTWARE;
D O I
10.1109/CONISOFT.2019.00017
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Software Engineering is a foundation on modern computer systems development. This discipline is offered by the large branch of related university degrees these days around the world, among with other computer science courses. As we all know, cybersecurity problems are mostly related with software, for example bad implementations, poor quality achieved, lack of testing. Overall the bigger problem is lack of security planification since the inception and designing of the project. Cybersecurity had gained a lot of attention in recent years. From everyday desktop software been exploited, such as browser exploits and Windows RDP protocol exploits, to abusing Internet of Things to create massive botnets capable to disrupt the Internet service, the case of Mirai in 2017 as an example. We believe that if security played a basic role from the inception of the software project, much of this incidents could be prevented. So, we are proposing to introduce cybersecurity basics in the software engineering courses to raise the awareness of this problems to future professional software engineers.
引用
收藏
页码:49 / 54
页数:6
相关论文
共 14 条
[1]  
[Anonymous], 2006, SECURITY DEV LIFECYC, DOI DOI 10.1088/1367-2630/8/3/033
[2]  
[Anonymous], 2017, CURR GUID POSTS DEGR
[3]  
Arnason S.T., 2007, How to Achieve 27001 Certification: An Example of Applied Compliance Management
[4]  
Buckley IA, 2018, INT J ADV COMPUT SC, V9, P448
[5]  
Chen L., 2010, P 14 C INF SYST SEC, P17
[6]   Software Security in Practice [J].
Chess, Brian ;
Arkin, Brad .
IEEE SECURITY & PRIVACY, 2011, 9 (02) :89-92
[7]   Processes for producing secure software - Summary of US National Cybersecurity Summit Subgroup Report [J].
Davis, N ;
Humphrey, W ;
Redwine, ST ;
Zibulski, G ;
McGraw, G .
IEEE SECURITY & PRIVACY, 2004, 2 (03) :18-25
[8]   On the secure software development process: CLASP, SDL and Touchpoints compared [J].
De Win, Bart ;
Scandariato, Riccardo ;
Buyens, Koen ;
Gregoire, Johan ;
Joosen, Wouter .
INFORMATION AND SOFTWARE TECHNOLOGY, 2009, 51 (07) :1152-1171
[9]  
Dodson D., 2019, MITIGATING RISK SOFT
[10]  
Futcher L., 2008, Proceedings of the 2008 Annual Research Conference of the South African Institute of computer Scientists and Information Technologists, V338, P56, DOI [10.1145/1456659.1456667, DOI 10.1145/1456659.1456667]