SQUARE

From Square Root

Jump to: navigation, search

SQUARE stands for Security QUAlity Requirements Engineering.

Steps

  1. Agree on definition of terms
  2. Identify safety, security, and privacy goals
  3. Develop artifacts
  4. Perform risk assessment
  5. Select requirements elicitation technique
  6. Elicit security requirements
  7. Categorize security requirements
  8. Prioritize security requirements
  9. Inspect security requirements

SQUARE Prototype

A folder of documents on the SQUARE prototype.

Studio introduction and background information (Movie - requires Windows Media Player plug-in)

SQUARE Prototype

Resources

SQUARE Technical Report (PDF) - SEI Website

SQUARE Case Study Reports

BSI content on requirements engineering

"Software Security Engineering: A Guide for Project Managers", Addison-Wesley

"Integrating Security and Software Engineering", IDEA Group Publishing (http://www.idea-group.com)

Experiences in Eliciting Security Requirements

Personal tools