May 1, 2026 Outline
Reading:
text
, §20
Assignments:
Homework #3 due May 11; Project progress report, due May 11
Build-in vs. add-on security
Policy and requirements
Security specifications
Problems with precision
Example: System X and Bell-LaPadula
Justifying requirements
Design documents
Security functions summary specification
External functional specification
Internal design description
Justifying design meets requirements
Reviews
Techniques to support implementation assurance
Implementation considerations
Implementation management
Testing
Operation and Maintenance Assurance
Matt Bishop
Office: 2209 Watershed Sciences
Phone: +1 (530) 752-8060
Email:
mabishop@ucdavis.edu
ECS 235B, Foundations of Computer and Information Security
Version of April 30, 2026 at 6:19PM
You can also obtain a PDF version of this.