Title
Application security - myth or reality?
Abstract
The Security services within applications have received recent attention. It has been suggested that this may be the only way to increase overall information system assurance in an era where ICT governance and compliance have taken on new force and the use of commodity level ICT products for critical information systems continues. While it has been argued that an application can be no more secure than its underlying computer subsystems, security at the application layer was always envisaged as playing a major role, e.g. in the "Open Systems Interconnection (OSI)" security model. At a time when "end-user" programming is being advocated, the needs and parameters of security education and training are rapidly changing, and increased threats from global Internet connection are rapidly rising, there is a need to reconsider security schemes at the application level. This paper examines current trends in application design, development, deployment and management and evaluates these against known system vulnerabilities and threats.
Year
DOI
Venue
2007
10.1007/978-3-540-72163-5_1
ISPEC
Keywords
Field
DocType
application design,critical information system,application layer,commodity level ict product,known system vulnerability,ict governance,application security,security education,security model,application level,security scheme,open systems interconnection,system security,information system,access control
Security convergence,Security through obscurity,Application security,Computer security,Computer science,Information security standards,Information security,Security service,Security information and event management,Computer security model
Conference
Volume
ISSN
Citations 
4464
0302-9743
0
PageRank 
References 
Authors
0.34
1
1
Name
Order
Citations
PageRank
William J. Caelli111358.16