Hide metadata

dc.date.accessioned2020-01-09T19:16:22Z
dc.date.available2020-01-09T19:16:22Z
dc.date.created2019-01-31T08:32:47Z
dc.date.issued2018
dc.identifier.citationRygge, Hanne Jøsang, Audun . Solving Security and Privacy Threats in Agile Software Development. Secure IT Systems - 23rd Nordic Conference, NordSec 2018, Oslo, Norway, November 28-30, 2018, Proceedings. 2018, 468-483 Springer Nature
dc.identifier.urihttp://hdl.handle.net/10852/72016
dc.description.abstractSecure software development represents a fundamental part of ‘security by design’ which in turn is a prerequisite for ‘privacy by design’ in the terminology of GDPR (General Data Protection Regulation). To follow and adhere to the principles of privacy by design and security by design during software development is a legal requirement throughout Europe with the introduction of GDPR in 2018. Secure software development is typically based on specific methods that software-design teams apply to discover and solve security threats and thereby to improve the security of systems in general. This paper describes Threat Poker as a team-based method to be exercised during agile software development for assessing both security risk and privacy risk, and for evaluating the effort needed to remove corresponding vulnerabilities in the developed software.en_US
dc.languageEN
dc.publisherSpringer Nature
dc.titleSolving Security and Privacy Threats in Agile Software Developmenten_US
dc.typeChapteren_US
dc.creator.authorRygge, Hanne
dc.creator.authorJøsang, Audun
cristin.unitcode185,15,5,0
cristin.unitnameInstitutt for informatikk
cristin.ispublishedtrue
cristin.fulltextpostprint
dc.identifier.cristin1669649
dc.identifier.bibliographiccitationinfo:ofi/fmt:kev:mtx:ctx&ctx_ver=Z39.88-2004&rft_val_fmt=info:ofi/fmt:kev:mtx:book&rft.btitle=Secure IT Systems - 23rd Nordic Conference, NordSec 2018, Oslo, Norway, November 28-30, 2018, Proceedings&rft.spage=468&rft.date=2018
dc.identifier.startpage468
dc.identifier.endpage483
dc.identifier.pagecount486
dc.identifier.doihttp://dx.doi.org/10.1007/978-3-030-03638-6_29
dc.identifier.urnURN:NBN:no-75144
dc.type.documentBokkapittelen_US
dc.type.peerreviewedPeer reviewed
dc.source.isbn978-3-030-03637-9
dc.identifier.fulltextFulltext https://www.duo.uio.no/bitstream/handle/10852/72016/2/RJ2018-NordSec.pdf
dc.type.versionAcceptedVersion
cristin.btitleSecure IT Systems - 23rd Nordic Conference, NordSec 2018, Oslo, Norway, November 28-30, 2018, Proceedings


Files in this item

Appears in the following Collection

Hide metadata