A reference measurement framework of software security product quality (SPQNFSR)
Abstract Currently, the customer's demands have expressively amplified their expectations of getting software at a high‐quality level. However, the non‐functional requirements of the software products attention have been expanded in both the academic and the industrial fields; so, there is no f...
Saved in:
Main Authors: | , , , |
---|---|
Format: | Article |
Language: | English |
Published: |
Wiley
2021-01-01
|
Series: | IET Information Security |
Subjects: | |
Online Access: | https://doi.org/10.1049/ise2.12002 |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
_version_ | 1832546718421352448 |
---|---|
author | Khalid T. Al‐Sarayreh Mamdouh Alenezi Mohammed Zarour Kenza Meridji |
author_facet | Khalid T. Al‐Sarayreh Mamdouh Alenezi Mohammed Zarour Kenza Meridji |
author_sort | Khalid T. Al‐Sarayreh |
collection | DOAJ |
description | Abstract Currently, the customer's demands have expressively amplified their expectations of getting software at a high‐quality level. However, the non‐functional requirements of the software products attention have been expanded in both the academic and the industrial fields; so, there is no framework for specifying and measuring such kinds of quality constraints for the security requirements of software product quality. This paper presents an integrated framework of the early specification and measurement of the functional and non‐functional software security requirements. Such a measurement framework would help software and systems engineers to improve product qualities whether the software has already been delivered or has yet to be built. The main steps that have been followed include: identify, specify and measure the software security requirements based on ISO/IEC SQuaRE series of international standards for software product quality. A standard measurement framework used to measure the functional size of the software product quality to develop a functional size measurement of the functional and non‐functional security requirements is described. As a result, a functional size measurement framework of the functional and non‐functional security requirements (SPQNFSR) using international standards is proposed. An automatic teller machine case study for the measurement of security requirements based on perspectives of a software functional user requirements is presented. Finally, it is concluded that it is essential to develop such a functional size measurement framework for functional and non‐functional security requirements to support developers to face the challenges derived from early dealing with such requirements. |
format | Article |
id | doaj-art-236b3318920a41fcbb557765c3bcf8e6 |
institution | Kabale University |
issn | 1751-8709 1751-8717 |
language | English |
publishDate | 2021-01-01 |
publisher | Wiley |
record_format | Article |
series | IET Information Security |
spelling | doaj-art-236b3318920a41fcbb557765c3bcf8e62025-02-03T06:47:25ZengWileyIET Information Security1751-87091751-87172021-01-01151233710.1049/ise2.12002A reference measurement framework of software security product quality (SPQNFSR)Khalid T. Al‐Sarayreh0Mamdouh Alenezi1Mohammed Zarour2Kenza Meridji3Department of Software Engineering Hashemite University Zarqa JordanDepartment of Computer Science Prince Sultan University Riyadh Saudi ArabiaDepartment of Computer Science Prince Sultan University Riyadh Saudi ArabiaDepartment of Software Engineering University of Petra Amman JordanAbstract Currently, the customer's demands have expressively amplified their expectations of getting software at a high‐quality level. However, the non‐functional requirements of the software products attention have been expanded in both the academic and the industrial fields; so, there is no framework for specifying and measuring such kinds of quality constraints for the security requirements of software product quality. This paper presents an integrated framework of the early specification and measurement of the functional and non‐functional software security requirements. Such a measurement framework would help software and systems engineers to improve product qualities whether the software has already been delivered or has yet to be built. The main steps that have been followed include: identify, specify and measure the software security requirements based on ISO/IEC SQuaRE series of international standards for software product quality. A standard measurement framework used to measure the functional size of the software product quality to develop a functional size measurement of the functional and non‐functional security requirements is described. As a result, a functional size measurement framework of the functional and non‐functional security requirements (SPQNFSR) using international standards is proposed. An automatic teller machine case study for the measurement of security requirements based on perspectives of a software functional user requirements is presented. Finally, it is concluded that it is essential to develop such a functional size measurement framework for functional and non‐functional security requirements to support developers to face the challenges derived from early dealing with such requirements.https://doi.org/10.1049/ise2.12002IEC standardsISO standardssecurity of datasoftware maintenancesoftware qualitysoftware standards |
spellingShingle | Khalid T. Al‐Sarayreh Mamdouh Alenezi Mohammed Zarour Kenza Meridji A reference measurement framework of software security product quality (SPQNFSR) IET Information Security IEC standards ISO standards security of data software maintenance software quality software standards |
title | A reference measurement framework of software security product quality (SPQNFSR) |
title_full | A reference measurement framework of software security product quality (SPQNFSR) |
title_fullStr | A reference measurement framework of software security product quality (SPQNFSR) |
title_full_unstemmed | A reference measurement framework of software security product quality (SPQNFSR) |
title_short | A reference measurement framework of software security product quality (SPQNFSR) |
title_sort | reference measurement framework of software security product quality spqnfsr |
topic | IEC standards ISO standards security of data software maintenance software quality software standards |
url | https://doi.org/10.1049/ise2.12002 |
work_keys_str_mv | AT khalidtalsarayreh areferencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr AT mamdouhalenezi areferencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr AT mohammedzarour areferencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr AT kenzameridji areferencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr AT khalidtalsarayreh referencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr AT mamdouhalenezi referencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr AT mohammedzarour referencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr AT kenzameridji referencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr |