11.01.2017 Views

A Technical History of the SEI

ihQTwP

ihQTwP

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

References<br />

[Alberts 2005] Alberts, Christopher & Dor<strong>of</strong>ee, Audrey. Mission Assurance Analysis Protocol<br />

(MAAP): Assessing Risk in Complex Environments (CMU/<strong>SEI</strong>-2005-TN-032). S<strong>of</strong>tware Engineering<br />

Institute, Carnegie Mellon University, 2005. http://resources.sei.cmu.edu/library/assetview.cfm?AssetID=7505<br />

[Alberts 2010] Alberts, Christopher; Allen, Julia; & Stoddard, Robert. Integrated Measurement<br />

and Analysis Framework for S<strong>of</strong>tware Security (CMU/<strong>SEI</strong>-2010-TN-025). S<strong>of</strong>tware Engineering<br />

Institute, Carnegie Mellon University, 2010. http://resources.sei.cmu.edu/library/assetview.cfm?AssetID=9369<br />

[Alberts 2012] Alberts, Christopher & Dor<strong>of</strong>ee, Audrey. Mission Risk Diagnostic (MRD) Method<br />

Description (CMU/<strong>SEI</strong>-2012-TN-005). S<strong>of</strong>tware Engineering Institute, Carnegie Mellon University,<br />

2012. http://resources.sei.cmu.edu/library/asset-view.cfm?AssetID=10075<br />

[Allen 2008] Allen, J.; Barnum, S.; Ellison, R.; McGraw, G.; & Mead, N. S<strong>of</strong>tware Security Engineering:<br />

A Guide for Project Managers. Addison-Wesley, 2008 (ISBN-13:978-0-321-50917-8).<br />

[CNSS 2010] Committee on National Security Systems. National Information Assurance Glossary.<br />

CNSS Instruction No. 4009, April 26, 2010. http://www.ncix.gov/publications/policy/docs/CNSSI_4009.pdf<br />

[Croll 2013] Croll, Paul. “Managing Supply Chain Risk – Understanding Vulnerabilities in <strong>the</strong><br />

Code You Buy, Build, or Integrate.” IEEE S<strong>of</strong>tware Technology Conference (STC 2013). Salt<br />

Lake City, Utah, April 8-11, 2013. IEEE, 2013.<br />

[Ellison 2010a] Ellison, Robert & Woody, Carol. “Considering S<strong>of</strong>tware Supply-Chain Risks.”<br />

CrossTalk 23, 5 (September/October 2010): 9-12.<br />

[Ellison 2010b] Ellison, Robert & Woody, Carol. Survivability Analysis Framework (CMU/<strong>SEI</strong>-<br />

2010-TN-013). S<strong>of</strong>tware Engineering Institute, Carnegie Mellon University, 2010. http://resources.sei.cmu.edu/library/asset-view.cfm?AssetID=9323<br />

[Khan 2009] Kahn, M. U. A. & Zulkernine, M. “On Selecting Appropriate Development Processes<br />

and Requirements Engineering Methods for Secure S<strong>of</strong>tware” 353-358. 33rd Annual IEEE<br />

International Computer S<strong>of</strong>tware and Applications Conference, 2009 (COMPSAC ’09) (Volume:<br />

2). Seattle, WA, July 2009. IEEE, 2009.<br />

[Lipson 2001] Lipson, Howard; Mead, Nancy; & Moore, Andrew. Can We Ever Build Survivable<br />

Systems from COTS Components? (CMU/<strong>SEI</strong>-2001-TN-030). S<strong>of</strong>tware Engineering Institute,<br />

Carnegie Mellon University, 2001. http://resources.sei.cmu.edu/library/asset-view.cfm?AssetID=5581<br />

[Mead 2000] Mead, Nancy; Ellison, Robert; Linger, Richard; Longstaff, Thomas; & McHugh,<br />

John. Survivable Network Analysis Method (CMU/<strong>SEI</strong>-2000-TR-013). S<strong>of</strong>tware Engineering Institute,<br />

Carnegie Mellon University, 2000. http://resources.sei.cmu.edu/library/assetview.cfm?AssetID=5241<br />

CMU/<strong>SEI</strong>-2016-SR-027 | SOFTWARE ENGINEERING INSTITUTE | CARNEGIE MELLON UNIVERSITY 195<br />

Distribution Statement A: Approved for Public Release; Distribution is Unlimited.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!