Software Engineering


  Identify data security needs



Download 11,97 Mb.
Pdf ko'rish
bet260/584
Sana08.01.2022
Hajmi11,97 Mb.
#331302
1   ...   256   257   258   259   260   261   262   263   ...   584
Bog'liq
Software Engineering Architecture-driven Software Development ( PDFDrive )

8.3.6 
Identify data security needs
The requirements for data security must be specified to ensure that proper data 
access and control procedures are implemented. The requirements for data secu-
rity must be evaluated to ensure that business and personal data cannot be com-
promised. The business rules that govern whom within the business operation 
can access, modify, or delete data from persistent storage must be specified. The 
requirements for data access control privileges for each class of users must be spec-
ified, as well as specific software requirements for access control monitoring and 
enforcement.
An important aspect of data security is assigning a security classification identi-
fier for sensitive data elements. The different data security classification levels must 
be defined and the criteria for data elements to be assigned to each classification 
level should be specified. 
Table 8.1
 shows some typical security classification levels 
used in the private and government sectors.
In addition, the need for the application to apply cryptography algorithms to 
encrypt data before it is stored or transmitted must be specified. Personnel secu-
rity levels and user classes or roles that may access data must be identified, and 
the user classes, passwords, and data security administration responsibilities must 
be identified. How the application is to enforce these responsibilities, provide the 
Table 8.1 
Typical Private and Government Sector Security Classification Levels

Download 11,97 Mb.

Do'stlaringiz bilan baham:
1   ...   256   257   258   259   260   261   262   263   ...   584




Ma'lumotlar bazasi mualliflik huquqi bilan himoyalangan ©hozir.org 2024
ma'muriyatiga murojaat qiling

kiriting | ro'yxatdan o'tish
    Bosh sahifa
юртда тантана
Боғда битган
Бугун юртда
Эшитганлар жилманглар
Эшитмадим деманглар
битган бодомлар
Yangiariq tumani
qitish marakazi
Raqamli texnologiyalar
ilishida muhokamadan
tasdiqqa tavsiya
tavsiya etilgan
iqtisodiyot kafedrasi
steiermarkischen landesregierung
asarlaringizni yuboring
o'zingizning asarlaringizni
Iltimos faqat
faqat o'zingizning
steierm rkischen
landesregierung fachabteilung
rkischen landesregierung
hamshira loyihasi
loyihasi mavsum
faolyatining oqibatlari
asosiy adabiyotlar
fakulteti ahborot
ahborot havfsizligi
havfsizligi kafedrasi
fanidan bo’yicha
fakulteti iqtisodiyot
boshqaruv fakulteti
chiqarishda boshqaruv
ishlab chiqarishda
iqtisodiyot fakultet
multiservis tarmoqlari
fanidan asosiy
Uzbek fanidan
mavzulari potok
asosidagi multiservis
'aliyyil a'ziym
billahil 'aliyyil
illaa billahil
quvvata illaa
falah' deganida
Kompyuter savodxonligi
bo’yicha mustaqil
'alal falah'
Hayya 'alal
'alas soloh
Hayya 'alas
mavsum boyicha


yuklab olish