Security Practices in Agile Software Development

被引:0
|
作者
Selva-Mora, Alejandra [1 ]
Quesada-Lopez, Christian [2 ]
机构
[1] Univ Costa Rica, Graduated Sch Comp Sci & Informat, San Jose, Costa Rica
[2] Univ Costa Rica, Sch Comp Sci & Informat, San Jose, Costa Rica
关键词
Agile software development; security practices; benefits; challenges; mapping study;
D O I
10.1145/3643690.3648241
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Agile software development, widely embraced for its rapid response to organizational needs, faces challenges in seamlessly integrating security practices. Despite its success in delivering prioritized functionalities, there remain difficulties in meeting nonfunctional requirements, particularly security, making the alignment of security practices with agility a complex endeavor. This study conducts a mapping of 252 security practices identified from 35 primary studies, categorizing them into the Building Security In Maturity Model (BSIMM) and stages of the software development life cycle. Additionally, it identifies 38 benefits, emphasizing security awareness, implementation, and alignment with agility, alongside 95 challenges linked to knowledge gaps and complexity. The findings underscore ongoing efforts to integrate security practices in Agile environments, underscoring the importance of empirical evaluation and emphasizing the need to assess the actual benefits of proposed security practices in real world Agile software development.
引用
收藏
页码:56 / 63
页数:8
相关论文
共 50 条
  • [1] Towards the Integration of Security Practices in Agile Software Development: A Systematic Mapping Review
    Valdes-Rodriguez, Yolanda
    Hochstetter-Diez, Jorge
    Diaz-Arancibia, Jaime
    Cadena-Martinez, Rodrigo
    APPLIED SCIENCES-BASEL, 2023, 13 (07):
  • [2] Agile Software Development Methodologies and Practices
    Williams, Laurie
    ADVANCES IN COMPUTERS, VOL 80, 2010, 80 : 1 - 44
  • [3] Analysis of Strategies for the Integration of Security Practices in Agile Software Development: A Sustainable SME Approach
    Valdes-Rodriguez, Yolanda
    Hochstetter-Diez, Jorge
    Dieguez-Rebolledo, Mauricio
    Bustamante-Mora, Ana
    Cadena-Martinez, Rodrigo
    IEEE ACCESS, 2024, 12 : 35204 - 35230
  • [4] Effectiveness of Agile Practices in Global Software Development
    Jain, Ritu
    Suman, Ugrasen
    INTERNATIONAL JOURNAL OF GRID AND DISTRIBUTED COMPUTING, 2016, 9 (10): : 231 - 248
  • [5] Stress in Agile Software Development: Practices and Outcomes
    Meier, Andreas
    Kropp, Martin
    Anslow, Craig
    Biddle, Robert
    AGILE PROCESSES IN SOFTWARE ENGINEERING AND EXTREME PROGRAMMING, XP 2018, 2018, 314 : 259 - 266
  • [6] How agile are industrial software development practices?
    Hansson, Christina
    Dittrich, Yvonne
    Gustafsson, Bjorn
    Zarnak, Stefan
    JOURNAL OF SYSTEMS AND SOFTWARE, 2006, 79 (09) : 1295 - 1311
  • [7] Security in agile software development: A practitioner survey
    Rindell, Kalle
    Ruohonen, Jukka
    Holvitie, Johannes
    Hyrynsalmi, Sami
    Leppanen, Ville
    INFORMATION AND SOFTWARE TECHNOLOGY, 2021, 131
  • [8] Aligning Security Objectives With Agile Software Development
    Rindell, Kalle
    Hyrynsalmi, Sami
    Leppanen, Ville
    19TH INTERNATIONAL CONFERENCE ON AGILE SOFTWARE DEVELOPMENT (XP '18), 2018,
  • [9] Security in agile software development: A practitioner survey
    Rindell, Kalle
    Ruohonen, Jukka
    Holvitie, Johannes
    Hyrynsalmi, Sami
    Leppänen, Ville
    Information and Software Technology, 2021, 131
  • [10] The impact of agile practices on communication in software development
    M. Pikkarainen
    J. Haikara
    O. Salo
    P. Abrahamsson
    J. Still
    Empirical Software Engineering, 2008, 13 : 303 - 337