This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Category:OWASP Application Security Requirements Project
From OWASP
Revision as of 00:43, 27 July 2014 by Kait Disney-Leugers (talk | contribs)
|
|
---|---|
Overview
Clearly articulating project-agnostic application security requirements —both general and specific requirements — is the best way to ensure that software is developed under strong and workable security guidance
- Project purpose: To assemble a useful base of generic security requirements that could be used in most applications.
- Intended audience: Every person involved in application security, but especially for those responsible of sytem analysis and design.
- Project products: Deliverables would be business-focused, developed for Business Analysts and Project Managers rather than software developers.
PROJECT INFO What does this OWASP project offer you? |
RELEASE(S) INFO What releases are available for this project? | |||||||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
|
We are just re-starting the project after a couple of years without any progress. We need all the help we can get to make this a successful project
Short-term actions
- . Identify (map from other owasp projects) categorization and prioritize
- . Identify software development standards to document requirements
- . Define work plan
- . Define document's introduction (scope of the document, composition of the document)
- . Write first draft related to web applications
- . Review and adjust plan
Long-term actions
- Write requirements for mobile applications
- Write requirements for web services
- Write requirements for mobile applications
Media in category "OWASP Application Security Requirements Project"
This category contains only the following file.