Computing Reviews
Today's Issue Hot Topics Search Browse Recommended My Account Log In
Review Help
Search
Adaptable, model-driven security engineering for SaaS cloud-based applications
Almorsy M., Grundy J., Ibrahim A. Automated Software Engineering21 (2):187-224,2014.Type:Article
Date Reviewed: Oct 29 2014

This paper presents a novel approach to security for applications that are run on a central server and supplied to multiple consuming organizations (tenants) as a service. The issues associated with the separation of data and security profiles of each tenant from all others are described clearly. These are complicated by the fact that the security requirements apply to a finished product, not one under development. The software system under discussion appears to address all of the issues very well.

The idea is to externalize the security as far as possible. Privileged access to the controlled application is still required, so that hooks can be inserted for the external security processing.

The paper is recommended reading for those with an interest in the area, including those hosting software as a service to multiple tenants, and those who access such software.

Reviewer:  Neil D. Burgess Review #: CR142873 (1501-0063)
Bookmark and Share
  Featured Reviewer  
 
Software Engineering (D.2 )
 
 
Cloud Computing (C.2.4 ... )
 
Would you recommend this review?
yes
no
Other reviews under "Software Engineering": Date
Perspectives of system informatics: a comparative presentation of object-oriented programming with C++ and Java
Broy M. (ed), Zamulin A. (ed), Bjorner D., Springer-Verlag New York, Inc., Secaucus, NJ, 2002.  561, Type: Book (9783540430759)
Jul 3 2003
Relationship quality: the undervalued dimension of software quality
Russell B., Chatterjee S. Communications of the ACM 46(8): 85-89, 2003. Type: Article
Oct 14 2003
Executable JVM model for analytical reasoning: a study
Liu H., Moore J.  Interpreters, Virtual Machines and Emulators (Proceedings of the 2003 workshop, San Diego, California, Jun 12, 2003)15-23, 2003. Type: Proceedings
Sep 24 2003
more...

E-Mail This Printer-Friendly
Send Your Comments
Contact Us
Reproduction in whole or in part without permission is prohibited.   Copyright 1999-2024 ThinkLoud®
Terms of Use
| Privacy Policy