Towards a requirements-driven workbench for supporting software certification and accreditation

Seok Won Lee, Robin A. Gandhi, Siddharth Wagle

Research output: Chapter in Book/Report/Conference proceedingConference contribution

12 Scopus citations

Abstract

Security certification activities for software systems rely heavily on requirements mandated by regulatory documents and their compliance evidences to support accreditation decisions. Therefore, the design of a workbench to support these activities should be grounded in a thorough understanding of the characteristics of certification requirements and their relationships with certification activities. To this end, we utilize our findings from the case study of a certification process of The United States Department of Defense (DoD) to identify the design objectives of a requirements-driven workbench for supporting certification analysts. The primary contributions of this paper are: identifying key areas of automation and tool support for requirements-driven certification activities; an ontology-driven dynamic and flexible workbench architecture to address process variability; and a prototype implementation.

Original languageEnglish (US)
Title of host publicationProceedings - ICSE 2007 Workshops
Subtitle of host publicationThird International Workshop on Software Engineering for Secure Systems, SESS'07
PublisherIEEE Computer Society
Pages8-14
Number of pages7
ISBN (Print)0769529526, 9780769529523
DOIs
StatePublished - 2007
Externally publishedYes
EventICSE 2007 Workshops: Third International Workshop on Software Engineering for Secure Systems, SESS'07 - Minneapolis, MN, United States
Duration: May 20 2007May 26 2007

Publication series

NameProceedings - ICSE 2007 Workshops: Third International Workshop on Software Engineering for Secure Systems, SESS'07

Conference

ConferenceICSE 2007 Workshops: Third International Workshop on Software Engineering for Secure Systems, SESS'07
Country/TerritoryUnited States
CityMinneapolis, MN
Period5/20/075/26/07

ASJC Scopus subject areas

  • Software
  • Automotive Engineering
  • Mechanical Engineering

Fingerprint

Dive into the research topics of 'Towards a requirements-driven workbench for supporting software certification and accreditation'. Together they form a unique fingerprint.

Cite this