search menu icon-carat-right cmu-wordmark

Incorporating Security Quality Requirements Engineering (SQUARE) into Standard Life-Cycle Models

Technical Note
In this 2008 report, the authors describe how SQUARE can be incorporated into standard lifecycle models for security-critical projects.
Publisher

Software Engineering Institute

CMU/SEI Report Number
CMU/SEI-2008-TN-006
DOI (Digital Object Identifier)
10.1184/R1/6574325.v1

Abstract

SQUARE (Security Quality Requirements Engineering) is a method for eliciting and prioritizing security requirements in software development projects. This report describes how SQUARE can be incorporated in standard life-cycle models for security-critical projects. Life-cycle models and process methods considered for the report are the waterfall model, Rational Unified Process, the spiral model, and Dynamic Systems Development Method (an agile method).  

This report is for information technology managers and security professionals, management personnel with technical and information security knowledge, and any personnel who manage security-critical projects that follow standard life-cycle models.

Cite This Technical Note

Mead, N., Viswanathan, V., Padmanabhan, D., & Raveendran, A. (2008, May 1). Incorporating Security Quality Requirements Engineering (SQUARE) into Standard Life-Cycle Models. (Technical Note CMU/SEI-2008-TN-006). Retrieved March 3, 2024, from https://doi.org/10.1184/R1/6574325.v1.

@techreport{mead_2008,
author={Mead, Nancy and Viswanathan, Venkatesh and Padmanabhan, Deepa and Raveendran, Anusha},
title={Incorporating Security Quality Requirements Engineering (SQUARE) into Standard Life-Cycle Models},
month={May},
year={2008},
number={CMU/SEI-2008-TN-006},
howpublished={Carnegie Mellon University, Software Engineering Institute's Digital Library},
url={https://doi.org/10.1184/R1/6574325.v1},
note={Accessed: 2024-Mar-3}
}

Mead, Nancy, Venkatesh Viswanathan, Deepa Padmanabhan, and Anusha Raveendran. "Incorporating Security Quality Requirements Engineering (SQUARE) into Standard Life-Cycle Models." (CMU/SEI-2008-TN-006). Carnegie Mellon University, Software Engineering Institute's Digital Library. Software Engineering Institute, May 1, 2008. https://doi.org/10.1184/R1/6574325.v1.

N. Mead, V. Viswanathan, D. Padmanabhan, and A. Raveendran, "Incorporating Security Quality Requirements Engineering (SQUARE) into Standard Life-Cycle Models," Carnegie Mellon University, Software Engineering Institute's Digital Library. Software Engineering Institute, Technical Note CMU/SEI-2008-TN-006, 1-May-2008 [Online]. Available: https://doi.org/10.1184/R1/6574325.v1. [Accessed: 3-Mar-2024].

Mead, Nancy, Venkatesh Viswanathan, Deepa Padmanabhan, and Anusha Raveendran. "Incorporating Security Quality Requirements Engineering (SQUARE) into Standard Life-Cycle Models." (Technical Note CMU/SEI-2008-TN-006). Carnegie Mellon University, Software Engineering Institute's Digital Library, Software Engineering Institute, 1 May. 2008. https://doi.org/10.1184/R1/6574325.v1. Accessed 3 Mar. 2024.

Mead, Nancy; Viswanathan, Venkatesh; Padmanabhan, Deepa; & Raveendran, Anusha. Incorporating Security Quality Requirements Engineering (SQUARE) into Standard Life-Cycle Models. CMU/SEI-2008-TN-006. Software Engineering Institute. 2008. https://doi.org/10.1184/R1/6574325.v1