Extending Model Driven Architecture with Software Security Assessment

Xucheng Tang,Beijun Shen
DOI: https://doi.org/10.1109/ssiri.2009.21
2009-01-01
Abstract:Security plays a crucial role in software systems. Existing research efforts have addressed the problem of how to model the security aspect of software at a particular phase of software lifecycle. However, security is still not integrated in all the phases of software lifecycle. In this paper we introduce how classical MDA framework can be extended to consider the security aspect. Such extension offers early assessment and early validation of security requirement, which helps to discover security flaws early in the software development process and reduce the cost of removing flaws.
What problem does this paper attempt to address?