home

Steps for Business Analyst To Gather Security Requirements from Misuse Cases by Manish Kumar

In this post, I will talk about misuse cases and steps to identify security requirements. Ivar Jacobson while working on large telecommunication systems introduced use cases. According to him use cases describe system's desired behavior in the form of a story ('Scenario')from the point view of a user or interfacing system('Actor') and supported by subsidiary scenarios in the form of alternatives and exceptions[Jacabson 1992]. On the other hand misuse cases are the inverse of use cases. The concept was coined in 1990s by Guttorm Sindre of the Norwegian University of Science and Technology, and Andreas L. Opdahl of the University of Bergen, Norway. The basic concept is describing the steps of performing a malicious act against a system, just as you would describe an act that the system is supposed to perform in a use case. So, use cases models the behavior expected from the system and misuse cases models the behavior not expected from the system.

To read this post further and for detailed explanations along with diagramatic representaions please download the whitepaper for the same in whitepapers section under requirements management category from Whitepaper for Steps for Business Analyst To Gather Security Requirements from Misuse Cases
or,
you can visit
Steps for Business Analyst To Gather Security Requirements from Misuse Cases

I will be glad to hear from you on this blog topic. All comments,positive or negative :), are most welcomed.
Thanks !
1704 [dot] manishatgmail [dot] com

    Sponsored Announcements & Special Offers

Are Your Processes Making You See RED?
Learn how to save Time, Cost and Heartburn!
Register for our OnDemand Webinars ($150 per webinar):
* Essentials of Process Mapping
* Eliminating Non-Value Added Activities

These pre-recorded e-Learning modules are based on time-tested seminars that are sponsored by prestigious universities from coast to coast. For more information, call us at 800-510-2117. Orion Development Group is the premier strategic process management training and consulting firm in America. For more information

view counter

Iterative Requirement Management – Just Got Easier
Write effective functional specs, use cases or user stories. Elicit, manage and elaborate software requirements. Communicate iterative change. Discover how AppLife DNA can enable iterative requirements elicitation and allow your team to reap the benefits of a living requirements document. You will see the difference. Take a 30-day FREE TRIAL

view counter
© 2007 Requirements Networking Group All rights reserved. contact | advertise | privacy
Requirements Networking Group