Index

Index terms should be read within the context of software security engineering. For example, “requirements engineering” refers to security requirements engineering.

Numbers

90 percent right, 167

“95 percent defect removal,” 14

100-point method, 108

A

Absolute code metrics, 159–160

Abstraction, 102

Abuse cases. See Misuse/abuse cases

Accelerated Requirements Method (ARM), 103

Access control, identity management, 197

Accountability, 27, 283

Active responses, 245

Ad hoc testing, 170

Adequate security, defining, 236–238, 278

Age verification case study, 199

AHP, 110

Ambiguity analysis, 128–129, 283

Analyzing

failures. See Failure analysis

risks. See Architectural risk analysis; RMF (risk management framework)

source code. See Source code analysis; ...

Get Software Security Engineering: A Guide for Project Managers now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.