DOI: 10.5176/2251-2217_SEA25
Authors: Mukta Narang and Monica Mehrotra
Abstract:
During the last few years it is observed that the focus of the software industry is shifting towards measuring the security in software. The CIAAAN framework was hence proposed which could be used to measure security of software systems. Weights play a very important role, in this framework. In the proposed version, survey method was used to calculate weights. It was observed that the survey approach would be more suitable when CIAAAN would be established to a level were some standard weight values needed to be identified. But at the novice stages of CIAAAN there were some challenges with the approach of assigning weights. This study is an attempt to identify the gaps in the survey approach and further propose an alternate method, Comparative Weight Calculation Method (CWCM) to assign weights for CIAAAN. This study has been inspired by the Analytical hierarchical process (AHP) of defining priorities.
Keywords: Security measurement framework, Security metrics, CIAAAN, Security weights, Comparative weight calculation method (CWCM)
