¨Current state of the art in assurance incorporates reasonable front-end (specification) and back-end (validation) mechanisms and processes
–There are large holes: CC makes no provision for
networking!
¨In this course, we will focus on assurance as seen by the developer.
¨This is a large hole in the current practices and
standards
–No texts, few guidelines, no mature and established
tools, few tools of any sort at all.
–Most relevant work has been in conventional Q/A
–Most of that is focused on post-hoc assurance and on
development-time testing techniques