A reference measurement framework of software security product quality (SPQNFSR)

Abstract Currently, the customer's demands have expressively amplified their expectations of getting software at a high‐quality level. However, the non‐functional requirements of the software products attention have been expanded in both the academic and the industrial fields; so, there is no f...

Full description

Saved in:
Bibliographic Details
Main Authors: Khalid T. Al‐Sarayreh, Mamdouh Alenezi, Mohammed Zarour, Kenza Meridji
Format: Article
Language:English
Published: Wiley 2021-01-01
Series:IET Information Security
Subjects:
Online Access:https://doi.org/10.1049/ise2.12002
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1832546718421352448
author Khalid T. Al‐Sarayreh
Mamdouh Alenezi
Mohammed Zarour
Kenza Meridji
author_facet Khalid T. Al‐Sarayreh
Mamdouh Alenezi
Mohammed Zarour
Kenza Meridji
author_sort Khalid T. Al‐Sarayreh
collection DOAJ
description Abstract Currently, the customer's demands have expressively amplified their expectations of getting software at a high‐quality level. However, the non‐functional requirements of the software products attention have been expanded in both the academic and the industrial fields; so, there is no framework for specifying and measuring such kinds of quality constraints for the security requirements of software product quality. This paper presents an integrated framework of the early specification and measurement of the functional and non‐functional software security requirements. Such a measurement framework would help software and systems engineers to improve product qualities whether the software has already been delivered or has yet to be built. The main steps that have been followed include: identify, specify and measure the software security requirements based on ISO/IEC SQuaRE series of international standards for software product quality. A standard measurement framework used to measure the functional size of the software product quality to develop a functional size measurement of the functional and non‐functional security requirements is described. As a result, a functional size measurement framework of the functional and non‐functional security requirements (SPQNFSR) using international standards is proposed. An automatic teller machine case study for the measurement of security requirements based on perspectives of a software functional user requirements is presented. Finally, it is concluded that it is essential to develop such a functional size measurement framework for functional and non‐functional security requirements to support developers to face the challenges derived from early dealing with such requirements.
format Article
id doaj-art-236b3318920a41fcbb557765c3bcf8e6
institution Kabale University
issn 1751-8709
1751-8717
language English
publishDate 2021-01-01
publisher Wiley
record_format Article
series IET Information Security
spelling doaj-art-236b3318920a41fcbb557765c3bcf8e62025-02-03T06:47:25ZengWileyIET Information Security1751-87091751-87172021-01-01151233710.1049/ise2.12002A reference measurement framework of software security product quality (SPQNFSR)Khalid T. Al‐Sarayreh0Mamdouh Alenezi1Mohammed Zarour2Kenza Meridji3Department of Software Engineering Hashemite University Zarqa JordanDepartment of Computer Science Prince Sultan University Riyadh Saudi ArabiaDepartment of Computer Science Prince Sultan University Riyadh Saudi ArabiaDepartment of Software Engineering University of Petra Amman JordanAbstract Currently, the customer's demands have expressively amplified their expectations of getting software at a high‐quality level. However, the non‐functional requirements of the software products attention have been expanded in both the academic and the industrial fields; so, there is no framework for specifying and measuring such kinds of quality constraints for the security requirements of software product quality. This paper presents an integrated framework of the early specification and measurement of the functional and non‐functional software security requirements. Such a measurement framework would help software and systems engineers to improve product qualities whether the software has already been delivered or has yet to be built. The main steps that have been followed include: identify, specify and measure the software security requirements based on ISO/IEC SQuaRE series of international standards for software product quality. A standard measurement framework used to measure the functional size of the software product quality to develop a functional size measurement of the functional and non‐functional security requirements is described. As a result, a functional size measurement framework of the functional and non‐functional security requirements (SPQNFSR) using international standards is proposed. An automatic teller machine case study for the measurement of security requirements based on perspectives of a software functional user requirements is presented. Finally, it is concluded that it is essential to develop such a functional size measurement framework for functional and non‐functional security requirements to support developers to face the challenges derived from early dealing with such requirements.https://doi.org/10.1049/ise2.12002IEC standardsISO standardssecurity of datasoftware maintenancesoftware qualitysoftware standards
spellingShingle Khalid T. Al‐Sarayreh
Mamdouh Alenezi
Mohammed Zarour
Kenza Meridji
A reference measurement framework of software security product quality (SPQNFSR)
IET Information Security
IEC standards
ISO standards
security of data
software maintenance
software quality
software standards
title A reference measurement framework of software security product quality (SPQNFSR)
title_full A reference measurement framework of software security product quality (SPQNFSR)
title_fullStr A reference measurement framework of software security product quality (SPQNFSR)
title_full_unstemmed A reference measurement framework of software security product quality (SPQNFSR)
title_short A reference measurement framework of software security product quality (SPQNFSR)
title_sort reference measurement framework of software security product quality spqnfsr
topic IEC standards
ISO standards
security of data
software maintenance
software quality
software standards
url https://doi.org/10.1049/ise2.12002
work_keys_str_mv AT khalidtalsarayreh areferencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr
AT mamdouhalenezi areferencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr
AT mohammedzarour areferencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr
AT kenzameridji areferencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr
AT khalidtalsarayreh referencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr
AT mamdouhalenezi referencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr
AT mohammedzarour referencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr
AT kenzameridji referencemeasurementframeworkofsoftwaresecurityproductqualityspqnfsr