Secure Software Development Best Practices

Muhammad Firdaus Fauzi, Vinod Rama Mohan, Yang Qi, Christal Chandrasegar, Saira Muzafar
{"title":"Secure Software Development Best Practices","authors":"Muhammad Firdaus Fauzi, Vinod Rama Mohan, Yang Qi, Christal Chandrasegar, Saira Muzafar","doi":"10.54938/ijemdcsai.2023.02.1.256","DOIUrl":null,"url":null,"abstract":"This research aims to explore optimal strategies for fortified software, enhancing the implementation of secure software development practices. Software security involves crafting and designing software that guarantees the integrity, confidentiality, and availability of its code, data, and functionalities. Often, in prioritizing functionality, security takes a back seat when organizations embark on system development. Yet, it's imperative to embed security at every phase of the Software Development Life Cycle (SDLC). Numerous methodologies and models exist for addressing software security, but only a few substantiate creating secure software applications effectively. Despite advancements, software security remains inadequately addressed, posing a challenge to integrating security protocols into the SDLC seamlessly. This review advocates specific security measures to be integrated at each SDLC level, fostering a secure SDLC. Efficient amalgamation of these processes ensures the delivery of secure software systems with minimized resource expenditure. Additionally, it highlights hurdles encountered in employing agile development methodologies for crafting secure software. These challenges stem from assessing agile ideals, principles, and security assurance procedures. These findings underscore the urgency for research facilitating safe software development, addressing barriers inhibiting its adoption. The paper serves as a valuable reference, shedding light on the significance of establishing secure software development processes.","PeriodicalId":448083,"journal":{"name":"International Journal of Emerging Multidisciplinaries: Computer Science & Artificial Intelligence","volume":"139 44","pages":""},"PeriodicalIF":0.0000,"publicationDate":"2023-11-25","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"International Journal of Emerging Multidisciplinaries: Computer Science & Artificial Intelligence","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.54938/ijemdcsai.2023.02.1.256","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

This research aims to explore optimal strategies for fortified software, enhancing the implementation of secure software development practices. Software security involves crafting and designing software that guarantees the integrity, confidentiality, and availability of its code, data, and functionalities. Often, in prioritizing functionality, security takes a back seat when organizations embark on system development. Yet, it's imperative to embed security at every phase of the Software Development Life Cycle (SDLC). Numerous methodologies and models exist for addressing software security, but only a few substantiate creating secure software applications effectively. Despite advancements, software security remains inadequately addressed, posing a challenge to integrating security protocols into the SDLC seamlessly. This review advocates specific security measures to be integrated at each SDLC level, fostering a secure SDLC. Efficient amalgamation of these processes ensures the delivery of secure software systems with minimized resource expenditure. Additionally, it highlights hurdles encountered in employing agile development methodologies for crafting secure software. These challenges stem from assessing agile ideals, principles, and security assurance procedures. These findings underscore the urgency for research facilitating safe software development, addressing barriers inhibiting its adoption. The paper serves as a valuable reference, shedding light on the significance of establishing secure software development processes.
安全软件开发最佳实践
本研究旨在探索强化软件的最佳策略,加强安全软件开发实践的实施。软件安全涉及软件的制作和设计,以保证其代码、数据和功能的完整性、保密性和可用性。企业在进行系统开发时,往往会优先考虑功能性,而将安全性放在次要位置。然而,在软件开发生命周期(SDLC)的每个阶段都必须嵌入安全性。解决软件安全问题的方法和模型不胜枚举,但能有效创建安全软件应用程序的却寥寥无几。尽管取得了进步,但软件安全性问题仍未得到充分解决,这对将安全协议无缝集成到 SDLC 中构成了挑战。本综述提倡将具体的安全措施整合到 SDLC 的各个层面,以促进安全的 SDLC。有效整合这些流程可确保以最小的资源支出交付安全的软件系统。此外,它还强调了在采用敏捷开发方法制作安全软件时遇到的障碍。这些挑战源于对敏捷理想、原则和安全保证程序的评估。这些发现强调了研究促进安全软件开发、解决阻碍其采用的障碍的紧迫性。该论文具有重要的参考价值,阐明了建立安全软件开发流程的重要意义。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信