首页    期刊浏览 2024年12月04日 星期三
登录注册

文章基本信息

  • 标题:WEB APPLICATION SECURITY INSTRUCTIONAL PARADIGMS AND THE IS CURRICULUM
  • 本地全文:下载
  • 作者:J. Laverty ; John Scarpino
  • 期刊名称:Issues in Information Systems
  • 印刷版ISSN:1529-7314
  • 出版年度:2009
  • 卷号:10
  • 期号:1
  • 页码:87-96
  • 出版社:International Association for Computer Information Systems
  • 摘要:This document provides an overview of the growing importance of web application security threats and its role in the IS security curriculum. Two alternative instructional paradigms designed to present web application security were reviewed. Secure Programming curricula have been used to present detailed coverage from a software coding perspective. However, the Secure Programming Paradigm may present challenges in the choice of programming language or the required level of programming prerequisites that may not be appropriate for an Information Systems curriculum. As an alternative, the Automated Web Application Testing Paradigm using IBM's AppScan web security testing tool presents web application security from a quality assurance and testing perspective that may be integrated within the Software Development Life Cycle (SDLC). Recommendations for the integration of web application security in context of an Information Systems curriculum will be discussed.
  • 关键词:Application Security; Web Application Security Testing; Automated Application Testing Tools; IBM;AppScan; Secure Programming; IS Model Curriculum.
国家哲学社会科学文献中心版权所有