See this document in CiteSeerX!

Teaching Security Engineering Principles (2001)  (Make Corrections)  
Cynthia E. Irvine and Timothy Levin Computer Science Department, Naval...



  Home/Search   Context   Related

 
View or download:
navy.mil/people/fa...Princ_WISE2_01.pdf
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  navy.mil/people/fa...publications (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: The design and construction of secure systems cannot be entirely captured in textbooks or class notes, but must be taught as an art which is learned through apprenticeship and practice. This paper describes a course in Secure Systems that uses the Flaw Hypothesis Methodology for penetration testing as a vehicle for motivating and teaching students fundamental principles of security engineering. (Update)

Active bibliography (related documents):   More   All
0.5:   A Vulnerability Taxonomy Methodology applied to Web Services - Berghe, Riordan, Piessens (2005)   (Correct)
0.4:   Partitioning in Avionics Architectures: Requirements, Mechanisms, .. - Rushby (2000)   (Correct)
0.3:   Handbook for the Computer Security Certification of.. - Chapter Overview Chapter   (Correct)

Similar documents based on text:   More   All
0.4:   Naval Postgraduate School - Monterey California Approved   (Correct)
0.4:   Teaching Introductory Computer Security at a Department of .. - Irvine, Stemp, Warren (1997)   (Correct)
0.4:   Data Integrity Limitations in Hybrid Security Architectures - Irvine, Levin (2000)   (Correct)

BibTeX entry:   (Update)

@misc{ and-teaching,
  author = "Cynthia Irvine And",
  title = "Teaching Security Engineering Principles",
  url = "citeseer.ist.psu.edu/644757.html" }
Citations (may not include all citations):
427   the Criteria to be Used in Decomposing Systems into Modules (context) - Parnas - 1972
194   The Protection of Information in Computer Systems (context) - Saltzer, Schroeder - 1975
185   Tamper Resistance - A Cautionary Note - Anderson, Kahn - 1996
68   Computer Security Technology Planning Study (context) - Anderson - 1972
57   Programmable Secure Coprocessor (context) - Smith, Weingart et al. - 1999
35   Inside Windows NT (context) - Solomon - 1998
35   Multiprogramming System (context) - Dijkstra, of et al. - 1968
24   Operating System Penetration (context) - Linde - 1975
12   The Multics Kernel Design Project (context) - Schroeder, Clark et al. - 1977
6   Inside Microsoft Windows CE (context) - Murray - 1998
6   Processor Architecture: Pitfalls for Secure Systems (context) - Sibert, Porras et al. - 1995
4   Penetrating an Operating System: A Study of VM/370 Integrity (context) - Attanasio, Markenstein et al. - 1976
3   Penetration Testing (context) - Weissman - 1995
2   Protection analysis: Final Report (context) - Bisbey, Hollingsworth - 1978
1   Security Penetration Testing Guideline (context) - Weissman

Documents on the same site (http://www.cs.nps.navy.mil/people/faculty/irvine/publications.html):   More
Naval Postgraduate Schoolcenter for Infosec Studies and Research: .. - Irvine (1997)   (Correct)
High Assurance Multilevel Services For Off-The-Shelf.. - Irvine, Anderson (1998)   (Correct)
Analysis of Terminal Server Architectures for Thin Clients in .. - Balmer, Irvine (2000)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC