2008 International Conference on Information Security and Assurance (Isa 2008) 2008
DOI: 10.1109/isa.2008.106
|View full text |Cite
|
Sign up to set email alerts
|

A Security Engineering Environment Based on ISO/IEC Standards: Providing Standard, Formal, and Consistent Supports for Design, Development, Operation, and Maintenance of Secure Information Systems

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
17
0
2

Year Published

2009
2009
2014
2014

Publication Types

Select...
5
4

Relationship

4
5

Authors

Journals

citations
Cited by 19 publications
(19 citation statements)
references
References 8 publications
0
17
0
2
Order By: Relevance
“…Some systematic development and maintenance methodology of an E-questionnaire server and supporting tools to develop and maintain the server are necessary. An information security engineering environment (ISEE) [7], [8] we are developing is an engineering environment that integrates various tools and provides comprehensive facilities for designers, developers, administrators/end-users, and maintainers of information/software systems such that they can use the tools and facilities to ensure the whole security of the target system anytime consistently and continuously according to ISO/IEC security standards. We expect that ISEE can support to develop and maintain an E-questionnaire server.…”
Section: Technical Issuesmentioning
confidence: 99%
“…Some systematic development and maintenance methodology of an E-questionnaire server and supporting tools to develop and maintain the server are necessary. An information security engineering environment (ISEE) [7], [8] we are developing is an engineering environment that integrates various tools and provides comprehensive facilities for designers, developers, administrators/end-users, and maintainers of information/software systems such that they can use the tools and facilities to ensure the whole security of the target system anytime consistently and continuously according to ISO/IEC security standards. We expect that ISEE can support to develop and maintain an E-questionnaire server.…”
Section: Technical Issuesmentioning
confidence: 99%
“…From the viewpoint of security engineering, it is important to continuously design, develop, manage, maintain, and abrogate security facilities of information systems [1]. Security is not static and the best practice at present for security is not always the best because new techniques may be devised and used by crackers.…”
Section: Necessity Of Software Life Cycle Process For Secure Informatmentioning
confidence: 99%
“…It is also important to consistently design, develop, manage, maintain, and abrogate security facilities of information systems according to consistent standards [1]. Crackers generally attack the weakest link: the most vulnerable component in systems.…”
Section: Necessity Of Software Life Cycle Process For Secure Informatmentioning
confidence: 99%
“…An Information Security Engineering Environment is an engineering environment that integrates various tools and provides comprehensive facilities for designers, developers, administrators/end-users, and maintainers of information/software systems such that they can use the tools and facilities to ensure the whole security of the target system anytime consistently and continuously [6]. Note that the major point we made in the above definition is "to ensure the whole security of the target system anytime consistently and continuously" that emphasizes the wholeness of security of information/software systems and the continuity and randomness concerning time.…”
Section: Isee: An Information Security Engineering Environmentmentioning
confidence: 99%