• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. A trace management platform for risk-based security testing
 
  • Details
  • Full
Options
2014
Conference Paper
Title

A trace management platform for risk-based security testing

Abstract
The goal of risk-based security testing is to improve the security testing process in order to cover especially risky areas of the application under test and at the same time minimize the time to market and to improve the use of resources by focusing testing work on areas with the highest risks. In RBST risk factors are identified and risk-based security test cases are created and prioritized according to an applicable selection strategy. One of the challenges in RBST is to keep track of the different artifacts that are often managed by different tools. Traceability is the key to manage complex systems in development and testing. This paper introduces RISKTest, a trace management platform on the basis of Eclipse that supports the creation and documentation of cross-tool relations during test development and test execution. RISKTest is dedicated to risk-based security testing. Thus, we concentrate on the management of traces between the artifacts from risk assessment and testing and the definitions of services that automatically analyze the related artifacts for security and testing related aspects. RISKTest has been developed in the DIAMONDS and RASEN projects and evaluated within the project's case studies.
Author(s)
Großmann, Jürgen  
Fraunhofer-Institut für Offene Kommunikationssysteme FOKUS  
Berger, Michael
Fraunhofer-Institut für Offene Kommunikationssysteme FOKUS  
Viehmann, Johannes  
Fraunhofer-Institut für Offene Kommunikationssysteme FOKUS  
Mainwork
Risk assessment and risk-driven testing. First International Workshop, RISK 2013  
Conference
International Workshop on Risk Assessment and Risk-Driven Testing (RISK) 2013  
International Conference on Testing Software and Systems (ICTSS) 2013  
DOI
10.1007/978-3-319-07076-6_9
Language
English
Fraunhofer-Institut für Offene Kommunikationssysteme FOKUS  
  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024