Reusable Security Requirements Repository Implementation Based on Application/System Components

2021-12-01
Özdemir Sönmez, Ferda
Günel Kılıç, Banu
Forming high quality requirements has a direct impact on project success. Gathering security requirements could be challenging, since it demands a multidisciplinary approach and security expertise. Security requirements repository enables an effective alternative for addressing this challenge. The main objective of this paper is to present the design of a practical repository model for reusable security requirements, which is easy to use and understand for even non-security experts. The paper also portrays an approach and a software tool for using this model to determine subtle security requirements for improved coverage. Proposed repository consists of attributes determined by examining common security problems covered in state-of-the-art publications. A test repository was prepared using specification files and Common Criteria documents. The outcomes of applying the proposed model were compared with the sample requirement sets included in the state-of-the-art publications. The results reveal that in the absence of a security requirements repository, key security points can be missed. Repository improves the completeness of the security terms with reasonable effort.

Suggestions

Cost estimation of housing projects by functional areas
Öncül, Mustafa; Arıkan, Metin S.; Department of Civil Engineering (2006)
Good conceptual cost estimates is one of the most important factors affecting the project success. Investment decisions taken and budget preparations are performed from the results of the conceptual estimates. Also, the most difficult cost estimation is the early estimates where there is very limited information. This thesis provides a model for the cost estimation of the housing projects at the conceptual stage, considering not only the total area of the construction, but also considering fractional areas,...
Engineering Effort Estimation for Product Development Projects
Yurt, Z. Ozturk; İyigün, Cem; Bakal, P. (2019-01-01)
Cost estimation is an essential process for gaining competitive advantage in the bidding phase of every project. Besides, cost estimates are also vital for effective project control. For product development projects engineering hours is the main cost item and hence estimating engineering hours for potential product development projects is an important task.
Reliability Improvement of a Solid Rocket Motor in Early Design Phases
Bozkaya, Kenan; Akkök, Metin; Esin, Alp (2009-07-01)
Designing a reliable system is difficult and costly, due to the design process to be followed and test requirements. It is important to consider reliability in very early design phases, and it is essential to select a baseline design with attainable high reliability. Therefore, in early phases, it is required to predict reliability and evaluate possible improvements for the reliability of the design alternatives in a fast manner to make necessary design decisions. In this study, a solid rocket motor is cons...
Business process modelling based computer-aided software functional requirements generation
Su, M. Onur; Demirörs, Onur; Department of Information Systems (2004)
Problems of requirements which are identified in the earlier phase of a software development project can deeply affect the success of the project. Thus studies which aim to decrease these problems are crucial. Automation is foreseen to be one of the possible solutions for decreasing or removing some of the problems originating from requirements. This study focuses on the development and implementation of an automated tool that will generate requirements in natural language from business process models. In t...
Architectural programming for achieving value-added design
Akınç, Günseli; Elias Özkan, Soofia Tahira; Department of Architecture (2005)
Values and concerns of project participants have influence on design quality as well as on the design process itself. These determine the functional, social and æsthetic characteristics of the project that are necessary to achieve client satisfaction. The issues of value and quality are compared within the context of architectural programming, including their theoretical and philosophical ground as well as current management techniques. Value and quality can be misunderstood and confused with each other; th...
Citation Formats
F. Özdemir Sönmez and B. Günel Kılıç, “Reusable Security Requirements Repository Implementation Based on Application/System Components,” IEEE Access, pp. 1–23, 2021, Accessed: 00, 2021. [Online]. Available: https://ieeexplore.ieee.org/document/9638498.