Ask Question, Ask an Expert

+61-413 786 465

info@mywordsolution.com

Ask Software Engineering Expert

Assignment

Create a software assurance guidelines document shell in Word. It should include the following:

• Create a title page

o Course number and name
o Project name
o Student name
o Date

• Table of contents (TOC)

o Use autogenerated TOC
o Separate page
o Maximum of 3 levels deep
o Update the TOC before submitting your project

• Section headings (create each heading on a new page with "TBD" as content, except for sections listed under New Content below)

o Project Outline
o Security in the Development Life Cycle
o Software Assurance Techniques
o Security in Nontraditional Development Models
o Security Static Analysis
o Software Assurance Policies and Processes

• Project outline and requirements

o Brief description of the organization (can be hypothetical) and where the guidelines will be implemented
o Company size, location(s), and other pertinent information
o List of the software applications provided by the company for the government

- The software list must include at least 1 desktop and 1 Web application.
- A database must be used with one of the applications.

o A summary of the software development organization within the company, employees and reporting structure, systems and technologies used for software development, testing, source control, and document storage

- Material can be taken from the approved proposal that was submitted to the instructor (ensure that this project is approved by the instructor).

• Security in the development life cycle

o Provide an outline of the SDLC model that is used in your organization, including each of the major phases.
o This should be a traditional SDLC. Extended models, such extreme programming, will be covered in a later section.
o Identify specific components of the security development model that can be applied to each of the phases of your SDLC model.
o For each pairing of security development model component to SDLC model phase, describe how the security model is applied and the major tasks that are involved.

Complete the Software Assurance Techniques section.

• Analysis:

o List and describe at least 3 software applications that are produced by the organization. The applications must include at least 1 desktop application and 1 Web application.

- One of the applications must use a database for data storage.

o Identify at least 2 areas of each application that are at security risk, and describe the possible threats and their implications to the organization and to the client (in this case, the government).

o For each security risk, identify at least 1 software assurance technique that can be applied to reduce the security threat.
• Guidelines:

o Based on the analysis that was performed in the previous step, prepare a set of software assurance guidelines that the organization can use for all of the applications that it creates.

o Guidelines should be categorized by the type of software application and if the application is using a database for data storage or not.

o Guidelines should identify the software assurance technique to be applied, and they should provide sufficient detail to allow the software development group to implement the technique.

Security in Nontraditional Development Models section:

• Identify a non-traditional software development model that could be used by your company.

• Provide a summary of the major steps in the development model, and describe the potential security threats for each step.

• Using the security development model as the foundation for analysis, develop and document appropriate policies and processes for each security risk that will minimize the threat.

• Association with the security development model should be demonstrated in the policies and processes.

Complete the Security Static Analysis section:

• Prepare a design for an application your organization might produce.

• Include appropriate diagrams to identify the major components of the application.

• Describe the major components and potential security issues where appropriate and as related to the security development model.

• Create code samples in C, C++, or Java to illustrate the tenets of the security development model.

• Identify at least 3 security static-analysis tools, and prepare guidelines for how they would be used in the sample code and throughout the software development in the company

• Software Assurance Policies and Processes section:

• Prepare a plan for the training of the software developers in the organization on the new software assurance guidelines.

• Define the metrics that will be collected to track the effectiveness of software assurance in the company.

o Include a description of how each of the metrics will be obtained and used.

• Identify the roles and responsibilities of the members of the security team with respect to software assurance in the organization.

• Software assurance guidelines document, final version:

• Review the entire document for any changes and improvements you would like to make.

• Ensure that this final version of the plan is sufficiently detailed to allow the organization to confidently move forward with software assurance based on your findings.

• Any previous instructor feedback should be addressed with appropriate changes.

Software Engineering, Computer Science

  • Category:- Software Engineering
  • Reference No.:- M92505902

Have any Question?


Related Questions in Software Engineering

Assignment lab - statement of workclient liberty vacation

Assignment Lab - Statement of Work Client: Liberty Vacation Planning Inc. (LVP) Project: Website Assessment 1. Project Objectives With this statement of work, LVP is engaging you to conduct a website assessment to determ ...

In this assignment you will answer the following questions

In this assignment, you will answer the following questions related to Android platform and Android security design. 1. Describe Android architecture in detail by explaining the four conceptual layers. 2. Describe Androi ...

Assignment part 1objectives to learn to identify the

Assignment Part 1 Objectives: To learn to identify the relevant use cases for a given application, describe the use cases and develop an object-oriented domain model. Problem Statement - Standing Orders Management System ...

In this assignment you will answer the following review

In this assignment, you will answer the following review questions from the reading materials of the module/week. 1. "What are the key components of a typical P2P application? Describe their functions." 2. "What are the ...

Research projectin the course we have covered various

RESEARCH PROJECT In the course, we have covered various security and privacy issues that arise in the cyberspace field. We have learned to identify these risks and have discussed the current approaches and developments f ...

The research paper for this course is about some of the

The research paper for this course is about some of the best sources of digital evidence for child abuse and exploitation, domestic violence, and gambling according to the National Institute of Justice. Research commerci ...

Instructions - onion routingin this assignment you will

INSTRUCTIONS - ONION ROUTING In this assignment, you will answer the following questions related to Onion Routing and Tor. 1. Describe the infrastructure of Onion Routing and explain how it works for providing anonymity ...

Write reply to this article with references with apa

Write reply to this article with references with APA bibliography. Hate Crimes Over the past couple of years, hate crimes have been on the rise in America's largest cities. Studies show that there were sharp spikes in th ...

Reply to this article with apa referencehate crimes

Reply to this article with APA reference. Hate crimes According to Merriam-Webster, hate crime is any of various crimes (such as assault or defacement of property) when motivated by hostility to the victim as a member of ...

Address the following integrating biblical perspectives

Address the following, integrating biblical perspectives where appropriate: Define a hate crime and describe how white supremacist groups use the Internet to spread their message of hate. Explain why hate crime legislati ...

  • 4,153,160 Questions Asked
  • 13,132 Experts
  • 2,558,936 Questions Answered

Ask Experts for help!!

Looking for Assignment Help?

Start excelling in your Courses, Get help with Assignment

Write us your full requirement for evaluation and you will receive response within 20 minutes turnaround time.

Ask Now Help with Problems, Get a Best Answer

Why might a bank avoid the use of interest rate swaps even

Why might a bank avoid the use of interest rate swaps, even when the institution is exposed to significant interest rate

Describe the difference between zero coupon bonds and

Describe the difference between zero coupon bonds and coupon bonds. Under what conditions will a coupon bond sell at a p

Compute the present value of an annuity of 880 per year

Compute the present value of an annuity of $ 880 per year for 16 years, given a discount rate of 6 percent per annum. As

Compute the present value of an 1150 payment made in ten

Compute the present value of an $1,150 payment made in ten years when the discount rate is 12 percent. (Do not round int

Compute the present value of an annuity of 699 per year

Compute the present value of an annuity of $ 699 per year for 19 years, given a discount rate of 6 percent per annum. As