Vous êtes sur la page 1sur 1

Week 6: SAMS Website Security Plan

Context/overview: Use the security-related activities in the life cycle, shown in figure 24.4
to create at security test plan.
Resources to consult: Chapter 24
Specific questions or items to address:
1. Use the domain model shown in figure 24.8 to see security related concepts and
relationships.
2. Identify security threats and derive security requirements and misuse cases. See
examples 24.2, and 24.3.
3. Specify role-based access rights
4. Discuss what will need to happen when requirements change. See section 24.7.2
Security in the Iterative Phase.
5. Discuss security in implementation, testing, and deployment.
Grading Rubric
Description
Security threats were identified
Security requirements were derived
Misuse cases were derived
Role bases access rights were specified
What needs to happen when requirements
change was discussed
Security in implementation, testing and
deployment were discussed.
Total

Maximum Your
Points
Points
15
20
15
15
15
15
100

Vous aimerez peut-être aussi