Incorporating Security Requirements Within the SDLC

One of the biggest vulnerabilities in today’s networks and online applications is poorly developed applications that have received little consideration as to confidentiality, integrity, and overall security. Many experts recommend that security be implemented during the design phase and throughout the maintenance of web applications.

Listed previously in this chapter were several stages of software development. It is possible to incorporate security throughout the entire SDLC. The following sections highlight how security considerations can be incorporated into each stage of the SDLC.

Systems Analysis Stage

In the systems analysis stage, what the software is designed to do and what problem ...

Get Internet and Web Application Security, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.