Font Size: a A A

Research On The Application Of Software Security Quantitative Analysis And Defense-in-Depth Security Model

Posted on:2008-08-05Degree:MasterType:Thesis
Country:ChinaCandidate:Y P LvFull Text:PDF
GTID:2178360215477168Subject:Software engineering project management
Abstract/Summary:PDF Full Text Request
The Paper emphasizes on the research of quantitative analysis method and world-wide popular"Defense in Depth"security model, based on author's deep understanding and project experience in software security field. For security risk assessment, the paper categorizes the general assessment process, analyzes the advantages/disadvantages and applicability between qualitative and quantitative methodologies, and proposes the applicable assessment process and new quantitative methodology that can adapt to different enterprise and software architectures. For"Defense in Depth"model, the paper analyzes the design thoughts, categorizes and summarizes the security protections on each security layer. The last but the most important, the author proposes a new security solution on Microsoft platforms with integrating the methodologies on quantitative risk assessment and Defense in Depth model, which is based on author's experience on products and projects and has been verified with real implementations.
Keywords/Search Tags:Software Security Risk Assessment, Quantitative Analysis, Defense-in-Depth, Microsoft Platform
PDF Full Text Request
Related items