An Analyzer-Based Software Security Measurement Model for Enhancing Software System Security

Author(s):  
Sen-Tarng Lai

Software security testing is essential to reveal the weaknesses in the security of the system. The security level of the software must be assessed properly and timely so that the security breaches can be prevented to occur otherwise they harm the system. Security testing during designing the software will be advantageous to reduce the rework and expenses required if it will be found insecure after the implementation. Security testing can be achieved efficiently through proper framework at the early stages of software development. Security can be checked at the initial level by taking inputs at the requirement phase and design phase so that loopholes can be found and the propagation of vulnerabilities can be prevented. At requirement phase security requirements can be filtered and then at the next phase designing artifacts can be inspected for security errors. A metric is designed which will grade the software under test and state that whether the system is secured at the proper level or not. In this paper a framework is proposed which is based on metric and the validation of the metric is done through the Weyuker’s property.


2021 ◽  
Vol 2021 ◽  
pp. 1-19
Author(s):  
Raghavendra Rao Althar ◽  
Debabrata Samanta ◽  
Manjit Kaur ◽  
Abeer Ali Alnuaim ◽  
Nouf Aljaffan ◽  
...  

Security of the software system is a prime focus area for software development teams. This paper explores some data science methods to build a knowledge management system that can assist the software development team to ensure a secure software system is being developed. Various approaches in this context are explored using data of insurance domain-based software development. These approaches will facilitate an easy understanding of the practical challenges associated with actual-world implementation. This paper also discusses the capabilities of language modeling and its role in the knowledge system. The source code is modeled to build a deep software security analysis model. The proposed model can help software engineers build secure software by assessing the software security during software development time. Extensive experiments show that the proposed models can efficiently explore the software language modeling capabilities to classify software systems’ security vulnerabilities.


2001 ◽  
Vol 17 (2) ◽  
pp. 98-111 ◽  
Author(s):  
Anders Sjöberg ◽  
Magnus Sverke

Summary: Previous research has identified instrumentality and ideology as important aspects of member attachment to labor unions. The present study evaluated the construct validity of a scale designed to reflect the two dimensions of instrumental and ideological union commitment using a sample of 1170 Swedish blue-collar union members. Longitudinal data were used to test seven propositions referring to the dimensionality, internal consistency reliability, and temporal stability of the scale as well as postulated group differences in union participation to which the scale should be sensitive. Support for the hypothesized factor structure of the scale and for adequate reliabilities of the dimensions was obtained and was also replicated 18 months later. Tests for equality of measurement model parameters and test-retest correlations indicated support for the temporal stability of the scale. In addition, the results were consistent with most of the predicted differences between groups characterized by different patterns of change/stability in union participation status. The study provides strong support for the construct validity of the scale and indicates that it can be used in future theory testing on instrumental and ideological union commitment.


Sign in / Sign up

Export Citation Format

Share Document