Optimization of Cyber Defense Exercises Using Balanced Software Development Methodology

Optimization of Cyber Defense Exercises Using Balanced Software Development Methodology

Radek Ošlejšek, Tomáš Pitner
DOI: 10.4018/IJITSA.2021010108
Article PDF Download
Open access articles are freely available for download

Abstract

Cyber defense exercises (CDXs) represent an effective way to train cybersecurity experts. However, their development is lengthy and expensive. The reason lies in current practice where the CDX life cycle is not sufficiently mapped and formalized, and then exercises are developed ad-hoc. However, the CDX development shares many aspects with software development, especially with ERP systems. This paper presents a generic CDX development method that has been derived from existing CDX life cycles using the SPEM standard meta-model. The analysis of the method revealed bottlenecks in the CDX development process. Observations made from the analysis and discussed in the paper indicate that the organization of CDXs can be significantly optimized by applying a balanced mixed approach with agile preparation and plan-driven disciplined evaluation.
Article Preview
Top

The use of agile methodologies has increased significantly over the past decades (Dingsøyr, Nerur, Balijepally, & Moe, 2012; Hoda, Salleh, & Grundy, 2018), promoting the value of the human-centric software development process. However, agile development suffers from many limitations (Misra, Kumar, Kumar, Fantazy, & Akhter, 2012; Turk, France, & Rumpe, 2014), and then it is not suitable for all types of projects (Ghayyur et al., 2018).

Complete Article List

Search this Journal:
Reset
Volume 17: 1 Issue (2024)
Volume 16: 3 Issues (2023)
Volume 15: 3 Issues (2022)
Volume 14: 2 Issues (2021)
Volume 13: 2 Issues (2020)
Volume 12: 2 Issues (2019)
Volume 11: 2 Issues (2018)
Volume 10: 2 Issues (2017)
Volume 9: 2 Issues (2016)
Volume 8: 2 Issues (2015)
Volume 7: 2 Issues (2014)
Volume 6: 2 Issues (2013)
Volume 5: 2 Issues (2012)
Volume 4: 2 Issues (2011)
Volume 3: 2 Issues (2010)
Volume 2: 2 Issues (2009)
Volume 1: 2 Issues (2008)
View Complete Journal Contents Listing