Dear all,
I'd like to announce that the paper "Cybersecurity Certification for Agile and
Dynamic Software Systems - a Process-Based Approach" by Volkmar Lotz has been
accepted for publication at CyberCert 2020, co-located with Euro S&P. CyberCert 2020
is organized with the support of SPARTA WP11 and chaired by Philippe Massonet.
Abstract:
In this extended abstract, we outline an approach for security certification of products
or services for modern commercial systems that are characterized by agile development, the
integration of development and operations, and high dynamics of system features and
structures. The proposed scheme rather evaluates the processes applied in development and
operations than investigates into the validity of the product properties itself. We argue
that the resulting claims are still suitable to increase the confidence in the security of
products and services resulting from such processes.
Best, Volkmar
Volkmar Lotz
Research Strategy Lead
SAP Security Research
SAP Labs France
805 Avenue du Dr. Maurice Donat, BP1216
F-06254 Mougins Cedex
T +33/492286444
M +33/621730474
mailto:volkmar.lotz@sap.com
http://www.sap.com<http://www.sap.com/>