PFIRES
Communications of the ACMPublished 1 July 2003
Jackie Rees, Subhajyoti Bandyopadhyay, Eugene H. Spafford
Citations123
SJR quartileQ1
SJR score1.15
SNIP3.34
Generate an AI Snapshot to get a quick, structured summary of this paper.
Study Snapshot
ObjectiveStudy objective
MethodsResearch methodology
PopulationPopulation studied
Sample sizeSample sizes
OutcomesStudy outcomes here
ResultsStudy results comes here
LimitationsResearch study limitations comes here
A concise AI-generated summary of the paper will appear here once you click Generate AI Snapshot.
TL;DR
This paper focuses on developing and maintaining effective security strategy and policy for software applications and describes the development and implementation of these policies in the rapidly changing environment.
Abstract
Creating and maintaining effective security strategy and policy for software applications.
Keywords
Computer Science
Competitive Strategy: Techniques for Analyzing Industries and Competitors
16,836 Citations1980Michael E. Porter
The Quarterly Journal of EconomicsInternational Investment and International Trade in the Product Cycle
7,433 Citations1966Raymond Vernon
MIS QuarterlyCoping With Systems Risk: Security Planning Models for Management Decision Making1
1,124 Citations1998Detmar W. Straub, Richard J. Welke
Results of comparative qualitative studies in two information services Fortune 500 firms identify an approach that can effectively deal with systems risk, and this theory-based security program includes use of a security risk planning model, education/training in security awareness, and Countermeasure Matrix analysis.
Modern Systems Analysis and Design
468 Citations1995Jeffrey A. Hoffer, Joey F. George +1 more
The authors have redesigned the distributed systems design chapter to also address Internet-based application design topics not covered in the other chapters: They cover Internet application design standards, how to maintain site consistency, security issues, and data warehousing, among other topics.
ACM Computing SurveysInformation systems security design methods
399 Citations1993Richard Baskerville
Comparisons and contrasts reveal that advances in security methods lag behind advances in general systems development methods and that more general methods fail to consider security specifications rigorously.
John Wiley & Sons, Inc. eBooksFighting computer crime: a new framework for protecting information
277 Citations1998Donn B. Parker
The Myth of Information Security, The Disastrous Hacker Culture, and Strategies for Effective Information Security: Doing It Right and Preparing for the Next Millennium.
Elsevier eBooksComputers and Security
71 Citations1987James A. Schweitzer
There are security benefits in having information in electronic form, but these can be realized only if the security manager can impress on the business leaders and information systems managers the need for concerted actions.
Developing Internet security policy for organizations
20 Citations2002Sharman Lichtenstein
A model of Internet security risks for an Internet user organization is proposed and the framework utilizes this model, as well as considering important holistic issues, in order to develop the user organization's Internet security policy.
