Abstract
Current practice suggests that security is considered through all stages of the software development life cycle, and that a risk-based and plan-driven approach is best suited to establish security criteria. Based on experience in applying security practices, this paper proposes two new security practices, security training and a fundamental security architecture, for applying Extreme Programming.
Original language | English |
---|---|
Pages | 226-230 |
Number of pages | 4 |
DOIs | |
Publication status | Published - 2007 |