Software Quality and Application Security Base on the AGILISO Software Development Process and the OWASP Standard
Guardado en:
Autores: | , |
---|---|
Formato: | artículo original |
Fecha de Publicación: | 2023 |
Descripción: | Globalization has driven all industrial sectors towards the modernization of obtaining, storing and accessing information in the support, mission and strategic processes, modernization that have started to become practically mandatory and immediate after the world pandemic declaration, which forced these processes to be carried out virtually since governments decreed confinements to the entire population; this unexpected circumstance leads to the imperative need to improve both software development practices and security testing of the applications that support the business operation. In this context, those responsible for internal control and information systems auditing departments must generate permanent evaluations of both software development processes and application security, ensuring compliance with international standards ISO/IEC 27001 and ISO/IEC 29110, verifying that the business logic is adequately supported by the organizations’ own or outsourced developments. This is a proposal to evaluate software quality based on the AGILISO software development process and application security based on the OWASP application security verification standard, strengthening and optimizing the auditing activity by internal control, auditors and information systems consultants, allowing the timely proposal of action plans that seek to correct the deviations detected. |
País: | RepositorioTEC |
Institución: | Instituto Tecnológico de Costa Rica |
Repositorio: | RepositorioTEC |
Lenguaje: | Español |
OAI Identifier: | oai:repositoriotec.tec.ac.cr:2238/14783 |
Acceso en línea: | https://revistas.tec.ac.cr/index.php/tec_marcha/article/view/6923 https://hdl.handle.net/2238/14783 |
Palabra clave: | Software quality security agile processes software development system audit Calidad de Software seguridad procesos ágiles desarrollo de software auditoría de sistemas |