ABSTRACT

T Development security has been more important to make secure IT products maintaining integrity and confidentiality during development process. However, standards which specify development security requirements are not detailed to use and differences also exist among requirements of each standard. In this paper, we present common development security requirements to maintain confidentiality and integrity of desired IT products in development environment. These requirements are induced through the analysis of security standards such as Common Criteria, BS 7799, and SSE-CMM. We believe that common development requirements we suggest contribute on improving security of IT products.