First European Symposium On Research In Computer Security (ESORICS 90)

Methodology "Minerve Security" - Evaluation Process of Software Security

Eric Deberdt, Sylvain Martin

Keywords : Security, Evaluation, Method, Criteria, Metrics

Abstract : The proposed evaluation process fits into a secure software development methodology. This methodology is built on a Top-Down systemic approach that begins with the global system definition (hardware, software and organizational) and that ends with the software development and certification. This approach is compatible with Mac CALL's "factors, criteria and metrics" approach, which gives the advantage of being compatible with a reference software quality assurance practice.

