Information Systems Security Engineering

From Wikipedia, the free encyclopedia

Information Systems Security Engineering (ISSE) is the process used to discover and meet the users' protection needs. ISSE should be part of systems engineering (SE) and the formal certification and accreditation process to ensure that security solutions are effective and efficient.

[edit] SE Activities

  1. Discover Needs
  2. Define System Requirements
  3. Design System Architecture
  4. Develop Detailed Design
  5. Implement System
  6. Assess Effectiveness

[edit] ISSE Activities

  1. Discover Information Protection Needs
  2. Define System Security Requirements
  3. Design System Security Architecture
  4. Develop Detailed Security Design
  5. Implement System Security
  6. Assess Information Protection Effectiveness