Skip to main navigation Skip to search Skip to main content

A quantitative and knowledge-based approach to choosing security architectural tactics

    Research output: Contribution to journalJournal articlepeer-review

    Abstract

    Biographical notes: Suntae Kim is an Assistant Professor of the Department of Software Engineering at Chonbuk National University. His research focuses on software architecture, design patterns, requirements engineering and mining software repository. Abstract: This paper presents a quantitative approach to choosing security architectural tactics using architectural tactic knowledge base. An architectural tactic is an architectural design building block pertaining to a software quality. The tactic knowledge base is a tactic repository composing of architectural tactic specifications defined in role based metamodelling language (RBML) and their relationships expressed in a feature model. In this paper, a cost of an architectural tactic is estimated by using the use case points method, and a level of tactic contribution for non-functional requirements (NFRs) is predicted by the analytic hierarchy process (AHP) and sensitivity analysis. Then, the proposed approach suggests the best possible fit which is likely to satisfy NFRs.We applied the approach to choosing security architectural tactics for building software architecture of an online trading system.

    Original languageEnglish
    Pages (from-to)45-53
    Number of pages9
    JournalInternational Journal of Ad Hoc and Ubiquitous Computing
    Volume18
    Issue number1-2
    DOIs
    StatePublished - 2015.01.1

    Keywords

    • Architectural tactic knowledge base
    • Quantitative tactic selection
    • Secure software architecture
    • Security architectural tactics

    Quacquarelli Symonds(QS) Subject Topics

    • Computer Science & Information Systems

    Fingerprint

    Dive into the research topics of 'A quantitative and knowledge-based approach to choosing security architectural tactics'. Together they form a unique fingerprint.

    Cite this