Advances in the Acquisition of Secure Systems Based on Open Architectures
Abstract
The role of software ecosystems in the development and evolution of secure open architecture systems has received insufficient consideration. Such systems are composed of software components subject to different security requirements in an architecture in which evolution can occur by evolving existing components or by replacing them. But this may result in possible security requirements conflicts and organizational liability for failure to ful?ll security obligations. We have developed an approach for understanding and modeling software security requirements as ''security licenses,'' as well as for analyzing conflicts among groups of such licenses in realistic system contexts and for guiding the acquisition, integration, or development of systems with open source components in such an environment. Consequently, this paper reports on our efforts to extend our existing approach to specifying and analyzing software intellectual property licenses to now address software security licenses that can be associated with secure OA systems.
Description
Proceedings Paper (for Acquisition Research Program)
Rights
This publication is a work of the U.S. Government as defined in Title 17, United States Code, Section 101. Copyright protection is not available for this work in the United States.NPS Report Number
NPS-AM-11-C8P02R03-024Related items
Showing items related by title, author, creator and subject.
-
Achieving Better Buying Power for Mobile Open Architecture Software Systems through Diverse Acquisition Scenarios
Scacchi, Walt; Alspaugh, Thomas A. (Monterey, California. Naval Postgraduate School, 2017-05); UCI-AM-17-041This research seeks to identify, track, and analyze software component costs and cost reduction opportunities within diverse acquisition life cycle scenarios for open architecture systems accommodating Web-based and mobile ... -
The Challenge of Heterogeneously Licensed Systems in Open Architecture Software Ecosystems
Scacchi, Walt; Alspaugh, Thomas (Monterey, California. Naval Postgraduate School, 2010-04-30); NPS-AM-10-046The role of software ecosystems in the development and evolution of open architecture systems has received insufficient consideration. Such systems are composed of heterogeneously licensed components, open source or ... -
Deep learning for media analysis in defense scenarios--an evaluation of an open-source framework for object detection in intelligence-related image sets
Paul, Taylor H. (Monterey, California: Naval Postgraduate School, 2017-06);The Department of Defense struggles to develop and maintain cutting-edge software through the Defense Acquisition System. The pace of improvements in machine learning algorithms and software suggests the organization will ...