Skip to main content
QUICK REVIEW

[論文レビュー] Secure Software Development Methodologies: A Multivocal Literature Review

Arina Kudriavtseva, Olga Gadyatskaya|arXiv (Cornell University)|Nov 29, 2022
Information and Cyber Security被引用数 4
ひとこと要約

このマルチボキャラルな文献レビューは、2004年から2022年までの産業界、政府、学術界から28のセキュアソフトウェア開発手法(SSDM)を分析し、ソフトウェア開発ライフサイクル(SDLC)全体にわたる技術的および補助的(非技術的)なセキュリティ実践をマッピングしている。主な研究ギャップとして、有効性の根拠が弱く、学術的なSSDMでは非技術的実践が限定的に取り入れられており、脆弱性の増加にもかかわらず、既存の手法が広く採用されていないことが明らかになった。

ABSTRACT

In recent years, the number of cyber attacks has grown rapidly. An effective way to reduce the attack surface and protect software is adoption of methodologies that apply security at each step of the software development lifecycle. While different methodologies have been proposed to address software security, recent research shows an increase in the number of vulnerabilities in software and data breaches. Therefore, the security practices incorporated in secure software development methodologies require investigation. This paper provides an overview of security practices involved in 28 secure software development methodologies from industry, government, and academia. To achieve this goal, we distributed the security practices among the software development lifecycle stages. We also investigated auxiliary (non-technical) practices, such as organizational, behavioral, legal, policy, and governance aspects that are incorporated in the secure software development methodologies. Furthermore, we explored methods used to provide evidence of the effectiveness of the methodologies. Finally, we present the gaps that require attention in the scientific community. The results of our survey may assist researchers and organizations to better understand the existing security practices integrated into the secure software development methodologies. In addition, our bridge between "technical" and "non-technical" worlds may be useful for non-technical specialists who investigate software security. Moreover, exploring the gaps that we found in current research may help improve security in software development and produce software with fewer number of vulnerabilities.

研究の動機と目的

  • 産業界、政府、学術界の28のセキュアソフトウェア開発手法(SSDM)におけるセキュリティ実践を体系化すること。
  • これらの実践をソフトウェア開発ライフサイクル(SDLC)の段階にマッピングすること。
  • ガバナンス、ポリシー、カルチャー、コミュニケーションなど、ソフトウェアセキュリティを支援する補助的(非技術的)実践を調査すること。
  • これらの手法の有効性を裏付ける証拠を評価すること。
  • 現在のSSDM研究および実務における研究ギャップを特定すること。

提案手法

  • ガローシィらの指針に従い、学術的および産業界の資料を統合したマルチボキャラルな文献レビューを実施した。
  • 2004年から2022年までの間に、多様な分野から28のSSDMを収集した。
  • セキュリティ実践をSDLCフェーズ(例:要件定義、設計、実装、テスト、展開)にマッピングした。
  • 技術的実践(例:脅威モデリング、静的解析)と補助的実践(例:ポリシー、カルチャー、倫理、コミュニケーション)に分類した。
  • 各手法に報告された有効性の検証研究および証拠をレビューした。
  • 内容、範囲、証拠の質の比較分析を通じて、研究ギャップを同定した。

実験結果

リサーチクエスチョン

  • RQ1ソフトウェア開発ライフサイクル全体にわたって、一般的に統合されているセキュリティ実践は何か?
  • RQ2セキュアソフトウェア開発手法は、ガバナンス、カルチャー、ポリシーなどの非技術的(補助的)セキュリティ実践をどのように統合しているか?
  • RQ3これらの手法は、ソフトウェア脆弱性の低減を主張するにあたり、どのような種類の証拠を提供しているか?
  • RQ4なぜ組織はしばしば既存の手法を採用せず、独自のSSDMを開発するのか?
  • RQ5現在のセキュアソフトウェア開発手法に関する研究における主要な研究ギャップは何か?

主な発見

  • 大多数のセキュアソフトウェア開発手法は、有効性に関する明確な証拠を欠いており、8つの学術論文のうちたった1つしか事例研究を含んでいなかった。
  • 要件定義や設計段階に特化した事例研究を含む手法はわずか2つにとどまり、実証的検証が限定的であることが示された。
  • 学術的なSSDMは技術的実践に重きを置く傾向があり、セキュリティカルチャー、ポリシー、チーム内コミュニケーションなどの補助的実践が軽視されている。
  • 多数のSSDMが存在するにもかかわらず、ソフトウェア脆弱性の数は増加を続けており、手法開発と実世界への影響の間にはギャップがあると示唆された。
  • 多くの手法が、独自のアプローチに何が新規性があるかを明確に説明しておらず、既存のフレームワークに既に記載された実践を再利用していることが多かった。
  • 組織が独自のSSDMを構築する傾向が強く、既存の手法を採用するのを避ける要因として、認識不足や実装負担の認識が関係している可能性がある。

より良い研究を、今すぐ始めましょう

論文の読解から最終レビューまで、研究時間を劇的に削減しましょう。

クレジットカード登録不要

このレビューはAIが作成し、人間の編集者が確認しました。