首页 | 本学科首页   官方微博 | 高级检索  
     检索      

企业应用软件开发安全体系的构建
引用本文:王伟萌,刘承亮,朱韦桥,苏伦.企业应用软件开发安全体系的构建[J].铁路计算机应用,2021,30(2):58-62,67.
作者姓名:王伟萌  刘承亮  朱韦桥  苏伦
作者单位:中国铁道科学研究院集团有限公司 电子计算技术研究所,北京 100081
基金项目:中国铁路总公司科技研究开发计划课题(J2018S001)。
摘    要:针对企业应用软件设计与开发过程中所需考虑的安全性问题,构建一套企业内部适用的应用软件开发安全体系.通过剖析企业应用软件常见漏洞防护技术,依照应用软件开发生命周期流程,从设计安全、编码安全、过程管理安全等方面重新梳理、补充企业应用软件开发安全体系的框架.考虑体系框架下对应安全要求,为了方便指导应用软件设计人员、代码开发人...

关 键 词:信息安全  应用安全  应用软件  安全开发体系  安全漏洞
收稿时间:2020-06-10

Construction of enterprise application software development security system
WANG Weimeng,LIU Chengliang,ZHU Weiqiao,SU Lun.Construction of enterprise application software development security system[J].Railway Computer Application,2021,30(2):58-62,67.
Authors:WANG Weimeng  LIU Chengliang  ZHU Weiqiao  SU Lun
Institution:Institute of Computing Technologies, China Academy of Railway Sciences Corporation Limited, Beijing 100081, China
Abstract:Aiming at the security problems that need to be considered in the process of enterprise application software design and development,this paper constructed a set of application software development security system suitable for enterprise.This paper analyzed the common vulnerability protection technologies of enterprise application software,according to the application software development life cycle process,reorganized and supplemented the framework of enterprise application software development security system from theaspects of design security,coding security,and process management security.Considering the corresponding security requirements under the framework of the system,in order to facilitate the guidance of application software designers and code developers,and improve the security capability of application software,the paper proposed a security system of enterprise application software development including technical requirements.The construction of enterprise application software development security system can help to reduce the software defects,prevent enterprise application software security vulnerabilities from being exploited by hackers,so as to avoid the possible serious or even catastrophic consequences.
Keywords:information security  application security  application software  security development system  security vulnerability
本文献已被 维普 等数据库收录!
点击此处可从《铁路计算机应用》浏览原始摘要信息
点击此处可从《铁路计算机应用》下载免费的PDF全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号