27.11.2014 Views

Software Security Engineering - Build Security In - US-CERT

Software Security Engineering - Build Security In - US-CERT

Software Security Engineering - Build Security In - US-CERT

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Architecture and Design Practices 2<br />

Practices in<br />

Recommended<br />

Order Description Maturity Audience<br />

Relevant for<br />

These Roles<br />

Architectural risk<br />

analysis<br />

<strong>Security</strong> guidelines<br />

Perform a detailed risk<br />

assessment of the software<br />

architecture and design and<br />

its ability to securely support<br />

the requirements of the<br />

software<br />

Technology-specific<br />

prescriptive guidance<br />

founded on demonstrated<br />

experience to guide<br />

integrating security concerns<br />

into architecture and design<br />

L3 M, L • Architect<br />

• Designer<br />

• <strong>Security</strong> analyst<br />

L3 M, L • Architect<br />

• Designer<br />

• Developer<br />

• <strong>Security</strong> analyst<br />

Thursday, November<br />

06, 2008<br />

<strong>Software</strong> <strong>Security</strong> <strong>Engineering</strong><br />

Nancy R. Mead, October 16, 2008<br />

© 2008 Carnegie Mellon University<br />

43

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!