EconPapers    
Economics at your fingertips  
 

Agile Development of Secure Web-Based Applications

A. F. Tappenden, T. Huynh, J. Miller, A. Geras and M. Smith
Additional contact information
A. F. Tappenden: University of Alberta, Canada
T. Huynh: University of Alberta, Canada
J. Miller: University of Alberta, Canada
A. Geras: University of Calgary, Canada
M. Smith: University of Calgary, Canada

Authors registered in the RePEc Author Service: Tu Tuan Huynh and Thanh D. Huynh

International Journal of Information Technology and Web Engineering (IJITWE), 2006, vol. 1, issue 2, 1-24

Abstract: This article outlines a four-point strategy for the development of secure Web-based applications within an agile development framework and introduces strategies to mitigate security risks commonly present in Web-based applications. The proposed strategy includes the representation of security requirements as test cases supported by the open source tool FIT, the deployment of a highly testable architecture allowing for security testing of the application at all levels, the outlining of an extensive security testing strategy supported by the open source unit-testing framework HTTPUnit, and the introduction of the novel technique of security refactoring that transforms insecure working code into a functionally equivalent secure code. Today, many Web-based applications are not secure, and limited literature exists concerning the use of agile methods within this domain. It is the intention of this article to further discussions and research regarding the use of an agile methodology for the development of secure Web-based applications.

Date: 2006
References: Add references at CitEc
Citations: View citations in EconPapers (1)

Downloads: (external link)
http://services.igi-global.com/resolvedoi/resolve. ... 018/jitwe.2006040101 (application/pdf)

Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.

Export reference: BibTeX RIS (EndNote, ProCite, RefMan) HTML/Text

Persistent link: https://EconPapers.repec.org/RePEc:igg:jitwe0:v:1:y:2006:i:2:p:1-24

Access Statistics for this article

International Journal of Information Technology and Web Engineering (IJITWE) is currently edited by Ghazi I. Alkhatib

More articles in International Journal of Information Technology and Web Engineering (IJITWE) from IGI Global
Bibliographic data for series maintained by Journal Editor ().

 
Page updated 2025-03-30
Handle: RePEc:igg:jitwe0:v:1:y:2006:i:2:p:1-24