{"title":"使用secDLC框架设计网络安全动手实验练习","authors":"H. Chi, Temilola Aderibigbe, E. Kalaimannan","doi":"10.1145/3190645.3190704","DOIUrl":null,"url":null,"abstract":"In software development, the life cycle in general consists of four different phases, which includes the design phase, development phase, implementation phase, and testing phase. The phases are being followed to ensure production of high-quality software that meets the demands and expectation of its intended audience. Security development follows a similar life cycle known as the Security Development Life Cycle (SecDLC) [1] to keep improving security in the real world. SecDLC is comprised of four distinct stages: Assessment, Detection, Protection, and Response. The goal of the SecDLC is to maintain, preserve, monitor, and improve information security. This paper outlines the initial development of the hands-on labs that would address every stage of SecDLC and thus provide practical tools to educate cybersecurity professionals. The labs developed will be a part of a new Cybersecurity educational framework.","PeriodicalId":403177,"journal":{"name":"Proceedings of the ACMSE 2018 Conference","volume":"6 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-03-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":"{\"title\":\"Design of cybersecurity hands-on laboratory exercises using secDLC framework\",\"authors\":\"H. Chi, Temilola Aderibigbe, E. Kalaimannan\",\"doi\":\"10.1145/3190645.3190704\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"In software development, the life cycle in general consists of four different phases, which includes the design phase, development phase, implementation phase, and testing phase. The phases are being followed to ensure production of high-quality software that meets the demands and expectation of its intended audience. Security development follows a similar life cycle known as the Security Development Life Cycle (SecDLC) [1] to keep improving security in the real world. SecDLC is comprised of four distinct stages: Assessment, Detection, Protection, and Response. The goal of the SecDLC is to maintain, preserve, monitor, and improve information security. This paper outlines the initial development of the hands-on labs that would address every stage of SecDLC and thus provide practical tools to educate cybersecurity professionals. The labs developed will be a part of a new Cybersecurity educational framework.\",\"PeriodicalId\":403177,\"journal\":{\"name\":\"Proceedings of the ACMSE 2018 Conference\",\"volume\":\"6 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2018-03-29\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"1\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Proceedings of the ACMSE 2018 Conference\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1145/3190645.3190704\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the ACMSE 2018 Conference","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/3190645.3190704","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Design of cybersecurity hands-on laboratory exercises using secDLC framework
In software development, the life cycle in general consists of four different phases, which includes the design phase, development phase, implementation phase, and testing phase. The phases are being followed to ensure production of high-quality software that meets the demands and expectation of its intended audience. Security development follows a similar life cycle known as the Security Development Life Cycle (SecDLC) [1] to keep improving security in the real world. SecDLC is comprised of four distinct stages: Assessment, Detection, Protection, and Response. The goal of the SecDLC is to maintain, preserve, monitor, and improve information security. This paper outlines the initial development of the hands-on labs that would address every stage of SecDLC and thus provide practical tools to educate cybersecurity professionals. The labs developed will be a part of a new Cybersecurity educational framework.