Earticle

현재 위치 Home 검색결과

결과 내 검색

발행연도

-

학문분야

자료유형

간행물

검색결과

검색조건
검색결과 : 14
No
1

4,000원

대부분의 소프트웨어 개발은 프로젝트 참여자들의 하드 스킬 능력 중심으로 판단되고 관리되고 운영된다. 그러나 현재의 소프트웨어 개발의 실패율은 매우 높다. 심리학의 발전으로 인간에 대한 탐험이 계속되면서 성격유형의 선호도가 업무의 선호도와도 연관이 있다는 연구가 활발히 이루어졌다. 심리유형론의 검사도구인 MBTI의 선호도는 ICT기술자들의 소프트웨어 개발주기에 맞춰진 업무의 선호도와 상관이 있음을 알게 되었다. 심리유형론과 소프트웨어 개발을 위한 소프트 스킬의 연관정보를 활용하면 소프트웨어 개발의 선호 공정을 이해할 수 있다. 본 논문에서는 ICT기술자들의 교육과 협업능력 향상 방안을 찾을 수 있도록 소프트웨어 개발 공정을 소프트스킬을 이용하여 성격유형별 분류가 가능하도록 프로그램을 개발하였다.

Most of the software development is determined by the hard skills of project participants and capacity management and operations. However, failure of the current software development is very high. Since the development of the exploration of human psychology continues, the study that there is an association between the preferences of personality and work preference has been actively conducted. It is found out that there is a relationship of preferences in MBTI, the test tool of psychological typology, and those for the work of the ICT engineers tuned to the software development cycle. By using the information on the soft skills associated with software development for the psychological typology, it can be understood the preference of the software development process. In this paper, we develop a program for software development process to allow personality type to be classified with using the soft skills to find ways to improve education and collaboration capabilities of ICT engineers.

2

Advancing Software Security and Reliability Through GPT-4 Turbo in the Software Development Life Cycle KCI 등재

Hansoo Lim, Jan Erik Meidell, Hyun-Jung Kim

국제차세대융합기술학회 차세대융합기술학회논문지 제8권 3호 2024.03 pp.864-872

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

본 연구는 소프트웨어 개발을 위하여 OWASP 상위 10개 보안 지침을 준수하는 과정에서 발생하는 인적 오류를 줄이는데 고급 AI 언어 모델인 GPT-4 Turbo 기술을 활용하는 방안을 제시한다. 특히, GPT-4 Turbo의 텍스트를 이해하고 생성하는 AI의 능력과 개발자의 전문성을 결합해 오류를 줄이는 것을 목표로 한다. 이를 위해 소프트웨어 개발 생명주기(SDLC) 전 과정에 GPT-4 Turbo 기술을 통합하는 방안을 연구하고, 소프트웨어 보안 과 신뢰성을 향상시킬 수 있는 프레임워크를 제안하였다. 제안한 프레임워크는 정기적으로 업데이트되는 OWASP 취약점에 대응하며 인적 오류를 줄이고 소프트웨어 보안을 강화하는데 도움을 제공하기 때문에 경영전략 관점에 서 소프트웨어 개발 및 관리 프로세스를 간소화하여 신속한 의사결정이 가능해진다.

This research introduces a strategy that leverages GPT-4 Turbo, an advanced AI language model, to minimize human errors encountered while complying with the OWASP Top Ten security guidelines in software development. The framework combines the AI's capabilities in text comprehension and generation with developers' expertise to reduce errors. It delves into integrating GPT-4 Turbo across the Software Development Life Cycle (SDLC), proposing a model that enhances both software security and reliability. This framework addresses and adapts to the regularly updated OWASP vulnerabilities, contributing to reduced human errors and improved security measures. Furthermore, it benefits in streamlining processes and accelerating decision-making within business strategy contexts, demonstrating the multifaceted advantages of integrating sophisticated AI solutions in software development and management practices.

3

소프트웨어 개발 생명주기 상에서 하이브리드 프롬프팅 기반 코드 생성 메커니즘

진예진, 김장환, 김기두, 김영철

[Kisti 연계] 한국정보처리학회 정보처리학회논문지 Vol.15 No.3 2026 pp.230-237

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

거대 언어 모델의 발전은 소프트웨어 개발 방식을 변화시키고 있다. 그러나 LLM은 충분한 맥락과 요구사항을 제공받지 못할 때, 사용자의 의도를 정확히 파악하기 어렵다. 이러한 한계는 개발자가 원하는 결과를 얻기 위해 정교한 프롬프트 엔지니어링에 많은 노력이 필요하다. 이를 해결하기 위해, 새로운 접근 방식인 자연어 요구사항, 설계 및 템플릿 코드를 입력하는 복합적인 프롬프팅 기반 코드 생성 메커니즘을 제안한다. 사용자의 의도와 시스템의 구조를 미리 정의된 템플릿 형태로 제공함으로써, LLM이 구체적인 요구사항을 더 정확하게 이해하도록 지원한다. 이러한 방식이 단순한 자연어 기반 방식보다 코드 생성의 정확성과 신뢰성을 향상시킬 것으로 기대한다. 본 연구는 사례 연구를 통해 기존 LLM과의 성능을 객관적으로 평가한다. LLM을 활용한 소프트웨어 개발 패러다임을 제시함으로써, LLM 기반 소프트웨어 개발 분야에 학문적 및 실용적으로 기여할 것으로 기대된다.

The advancement of large language models (LLMs) is transforming software development. However, LLMs struggle to accurately interpret user intent when insufficient context and requirements are provided. As a result, developers must invest significant effort in advanced prompt engineering to achieve the desired outcomes. To solve this, we propose a hybrid code generation mechanism that takes natural language requirements, design information, and template code as input. By providing a predefined template that represents the customer's intent and the system's structure, the method enables LLMs to understand specific requirements more accurately. This approach is expected to improve the accuracy and reliability of code generation compared to natural language-only methods. This study objectively evaluates its performance in comparison to existing LLM approaches through a case study. By presenting a new paradigm for LLM-based software development, the proposed method is expected to offer both academic and practical contributions to the field.

4

A Study on the Secure Software Development Life Cycle for Common Criteria (CC) Certification SCOPUS

Min-gyu Lee, Hyo-jung Sohn, Baek-min Seong, Jong-Bae Kim

보안공학연구지원센터(IJSEIA) International Journal of Software Engineering and Its Applications Vol.9 No.10 2015.10 pp.131-142

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Common Criteria (CC) is a global standard for the information technology security evaluation of IT products. IT products must obtain at least a certain Evaluation Assurance Level (EAL) to be supplied to governmental institutions. The general software development life cycle (SDLC) does not provide guidelines for the removal of the weaknesses in the software development process for CC certification, and software applications developed with security weaknesses that have not been removed can lead to fatal situations. At present, CC provides only security certification for the target of evaluation (TOE) and does not provide guidelines regarding the secure software development life cycle (SSDLC), which considers the weaknesses in the development process. If a TOE that has been specialized for CC is developed by SSDLC, both evaluators and developers can undertake CC certification from an objective standpoint. This paper presents an SSDLC that is appropriate for CC by discerning weaknesses, by referring to MS-SDL, McGraw’s TouchPoints, and OWASP CLASP based on the weaknesses provided by CWE (Common Weakness Enumeration). The findings of this study can be used as guidelines for the development process of weakness-free software applications by developers aiming for CC certification.

5

A Review of Open Source Software Development Life Cycle Models SCOPUS

Munish Saini, Kuljit Kaur

보안공학연구지원센터(IJSEIA) International Journal of Software Engineering and Its Applications Vol.8 No.3 2014.03 pp.417-434

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

The Life cycle for the development of traditional commercial software is well established and discussed in various texts and research papers in detail. But in case of Open Source Software (OSS) life cycle for the development is not being discussed in much detail as there is no standardized life cycle approach exists for Open Source Software (OSS) development. Different researchers and developers have proposed various life cycles for the development of OSS with respect to their own development experience, need, or application. The main focus of this paper is on reviewing and then comparing the existing Open Source Software Life Cycle (OSSLC) presented and proposed by the various researchers and practitioners. It will give a precise view that in actual what are the various development approaches are used in case of OSS and how development of open source software starts and proceeds.

6

Instrument of Security Assurance for Mobile Software Development Life Cycle KCI 등재후보

Haeng-Kon Kim

보안공학연구지원센터(JSE) 보안공학연구논문지 Vol.8 No.2 2011.04 pp.183-192

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Mobile Software is running on the specific mobile devices and need very secure assurance during development life cycle for performs certain secure tasks for the user of the mobile applications. Extreme programming (XP) is a modern approach for iterative development of software in which you never wait for the complete requirements and start development. Security is usually unnoticed during early phases of software life cycle. In this paper, our main objective is to focus on security requirements at each phase of software life cycle. In this regard, XP is a key solution that provides us with a guide with the ease to recheck our security requirements, if they are unnoticed at any step of software life cycle. Based on XP technique, a new model has been designed that focuses on the concept of iterative development of secure software. In addition, this paper is a guide for developers to develop secure software as most of the software developers are not trained for software security.

7

소프트웨어 개발주기 인력분포 모델

박석규, 박중양, 박재홍

[Kisti 연계] 한국컴퓨터산업교육학회 한국컴퓨터산업교육학회 논문지 Vol.5 No.1 2004 pp.9-18

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

성공적인 프로젝트 계획은 활용 가능한 일정과 더불어 프로젝트를 개발하는데 요구되는 인력을 얼마나 정확히 추정하느냐에 달려있다. 현존하는 소프트웨어 인력 추정 모델들은 생명주기 전반에 걸쳐 투입되는 총 인력과 단위시간당 소요되는 인력 분포를 제공한다. Putnam의 Rayleigh 모델이나 Phillai et al.의 Gamma 모델 모두 소프트웨어 개발이 종료되는 시점에서 투입되는 인력이 절정에 도달한다는 가정하에 모델을 제시하였다. 이는 개발완료시점까지 40%의 인력이 투입되며, 나머지 60%는 유지보수 단계에 투입됨을 의미한다. 그러나 Warburton은 실제 프로젝트는 대부분의 인력이 개발에 투입되고 설계가 종료된 시점에서 투입인력 규모가 절정에 도달하며, 유지보수에는 단지 적은 규모의 인력만이 소요됨을 관찰하였다. 따라서, 제안된 기존 모델들은 실제 프로젝트에 적용하는데 문제가 발생한다. 이러한 문제점을 해결하기 위해 본 논문은 투입인력 절정 시점 모수를 고려하지 않는 시그모이드 모델을 제시하였다. 제시된 모델을 실제 데이터에 적용하여 향상된 성능을 보였다 따라서 제안된 시그모이드 모델은 소프트웨어 개발주기 동안 투입되는 인력 분포를 추정하는데 있어서 Rayleigh나 Gamma 모델의 대안으로 적용이 가능하다.

Successful project planning relies on a good estimation of the manpower required to complete a project in addition to the schedule options that may be available. Existing software manpower estimation models present the total manpower and instantaneous manpower distribution for the software life cycle. Putnam's Rayleigh and Phillai et al.'s Gamma models present a model with assumption that the manpower is needed at the system delivery. This means that 40 percent of total manpower is applied at the software development, and the other 60% is applied during maintenance phase. However Warburton observes the manpower is needed during development phase with the peak at the completion of the software design phase. So, the existing models were not appropriate to be applied to practical projects. This paper suggests the Sigmoid model which does not consider the point of manpower peak to fix the problem above. The suggested model showed some improvement when practical data was applied. Therefore, the Sigmoid model can be used as alternative of Rayleigh and Gamma model to estimate distribution of manpower during software development phas.

8

소프트웨어 개발과정에서 정량적 품질평가를 위한 프레임워크

강승훈, 이길섭, 이승종

[Kisti 연계] 한국정보과학회 한국정보과학회 학술대회논문집 2004 pp.457-459

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

정보화 시대로의 진입과 더불어 정보기술이 발달하고 있으며 소프트웨어는 정보시스템의 핵심요소가 되고 있다 이에 따라 소프트웨어의 품질에 대한 관심이 증가하고 소프트웨어에 대한 품질보증활동이 요구되고 있다. 국제표준화 기구에서는 ISO/IEC 9126과 ISO/IEC 14598을 국제 표준으로 제시하였으나 소프트웨어 개발과정에 대한 구체적인 적용 방안이 제시되지 못하고 정성적인 평가에 종점을 두고 있으며 정략적인 품질 평가를 위한 세부기준이 미흡한 실정이다. 본 논문에서는 소프트웨어 개발과정에서 정략적 품질평가를 위한 프레임워크를 연구하고자 한다 이를 위하여 개발단계에서 이례 당사자에 따른 소프트웨어 품질특성의 중요도를 분석하고 이들 특성의 가중치를 이용하여 정량적 소프트웨어 평가 프레임워크를 제시하며 프레임워크를 이용한 품질관리 방안을 제시함으로써 소프트웨어 개발과정에서 효과적으로 소프트웨어 품질을 관리할 수 있게 한다.

9

의료기기 소프트웨어 위험관리를 위한 개발생명주기 기반 위험관리 요구사항 연관성 분석

김동엽, 박예슬, 이정원

[Kisti 연계] 한국정보처리학회 정보처리학회논문지/소프트웨어 및 데이터 공학 Vol.6 No.12 2017 pp.543-548

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

최근에는 의료기기의 구성 요소 중 소프트웨어의 기능과 역할이 커지고, 의료기기 소프트웨어의 작동이 사용자의 생명과 안전에 직결되는 특성으로 인해 의료기기 소프트웨어의 안전성 보장에 대한 중요함은 더욱 강조되고 있다. 이를 위해 의료기기의 안전성을 효과적으로 보장할 수 있는 활동과 각각의 요구사항들을 제시하고 있는 여러 표준이 제정되었다. 표준들이 의료기기 소프트웨어의 안전성을 보장하기 위해 제시하는 활동으로는 크게 의료기기 소프트웨어의 개발생명주기와 위험관리 프로세스로 나뉜다. 이 두 활동은 개발 과정 중 동시에 진행되어야 하지만, 의료기기 소프트웨어 개발생명주기의 각 단계에서 수행되어야하는 위험관리 요구사항들은 분류되어있지 않다는 한계점이 있다. 이로 인해 개발자들은 의료기기 개발 중에 직접 표준들의 연관성을 분석하여 위험관리 활동을 수행해야한다. 따라서 본 논문에서는 의료기기 소프트웨어 개발생명주기와 위험관리 프로세스의 연관성을 분석하고, 위험관리 요구사항 항목들을 추출한다. 그리고 분석한 연관성을 토대로 추출된 위험관리 요구사항 항목을 개발생명주기에 대응시킴으로서, 의료기기 소프트웨어의 개발 중 효과적이고 체계적인 위험관리를 가능하게 한다.

In recent years, the importance of the safety of medical device software has been emphasized because of the function and role of the software among components of the medical device, and because the operation of the medical device software is directly related to the life and safety of the user. To this end, various standards have been set up that provide activities that can effectively ensure the safety of medical devices and provide their respective requirements. The activities that standards provide to ensure the safety of medical device software are largely divided into the development life cycle of medical device software and the risk management process. These two activities should be concurrent with the development process, but there is a limitation that the risk management requirements to be performed at each stage of the medical device software development life cycle are not classified. As a result, developers must analyze the association of standards directly to develop risk management activities during the development of medical devices. Therefore, in this paper, we analyze the relationship between medical device software development life cycle and risk management process, and extract risk management requirement items. It enables efficient and systematic risk management during the development of medical device software by mapping the extracted risk management requirement items to the development life cycle based on the analyzed associations.

10

의료기기 소프트웨어 위험관리를 위한 PEMS 개발생명주기 기반 위험관리 항목 연관성 분석

김동엽, 박예슬, 이정원

[Kisti 연계] 한국정보처리학회 한국정보처리학회 학술대회논문집 2017 pp.605-608

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

최근에는 의료기기의 구성 요소 중 소프트웨어의 기능과 역할이 커지면서 의료기기 소프트웨어의 비중이 높아지고, 의료기기의 사용자의 생명과 안전에 직결되는 특성으로 인해 의료기기 소프트웨어 위험관리의 중요성은 더욱 강조되고 있다. 이를 위해 여러 표준들은 위험관리를 위한 다양한 요구사항들을 제시한다. 그러나 의료기기 소프트웨어 개발생명주기의 각 단계에서 수행되어야하는 위험관리 항목들은 분류되어있지 않다. 이로 인해 개발자들은 의료기기 개발 중에 직접 표준들의 연관성을 분석하여 위험관리 활동을 수행해야하는 어려움을 겪고 있다. 따라서 본 논문에서는 위험관리 프로세스의 항목들을 추출하고 PEMS(Programmable Electrical Medical System) 개발생명주기와 대응시켜 연관성을 분석하고, 이를 통해 의료기기 소프트웨어의 개발 중 효과적이고 체계적인 위험관리를 가능하게 한다.

11

의료기기 소프트웨어 위험관리를 위한 PEMS 개발생명주기 기반 위험관리 항목 연관성 분석

김동엽, 박예슬, 이정원

[Kisti 연계] 한국정보처리학회 한국정보처리학회 학술대회논문집 2017 pp.605-608

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

최근에는 의료기기의 구성 요소 중 소프트웨어의 기능과 역할이 커지면서 의료기기 소프트웨어의 비중이 높아지고, 의료기기의 사용자의 생명과 안전에 직결되는 특성으로 인해 의료기기 소프트웨어 위험관리의 중요성은 더욱 강조되고 있다. 이를 위해 여러 표준들은 위험관리를 위한 다양한 요구사항들을 제시한다. 그러나 의료기기 소프트웨어 개발생명주기의 각 단계에서 수행되어야하는 위험관리 항목들은 분류되어있지 않다. 이로 인해 개발자들은 의료기기 개발 중에 직접 표준들의 연관성을 분석하여 위험관리 활동을 수행해야하는 어려움을 겪고 있다. 따라서 본 논문에서는 위험관리 프로세스의 항목들을 추출하고 PEMS(Programmable Electrical Medical System) 개발생명주기와 대응시켜 연관성을 분석하고, 이를 통해 의료기기 소프트웨어의 개발 중 효과적이고 체계적인 위험관리를 가능하게 한다.

12

안전소프트웨어 생명 주기 공정 개발 방법론

김두환, 이순성, 차경호, 이장수, 권기춘, 한재복

[Kisti 연계] 한국원자력학회 한국원자력학회 학술대회논문집 2002 p.179

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

13

RAM 데이터를 적용한 철도시스템 LCC 분석 SW 개발 연구

박준서, 김종운, 김재훈, 정우성

[Kisti 연계] 한국정밀공학회 한국정밀공학회 학술대회논문집 2012 pp.983-984

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

14

유지보수관점에서의 수명주기비용예측 소프트웨어 개발

전현규, 김재훈, 김종운, 박준서

[Kisti 연계] 한국철도학회 한국철도학회 학술대회논문집 2007 pp.777-783

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

Life cycle costing is one of the most effective cost approaches when we choose a solution from series of alternative so the least long-term cost ownership is achieved. Life cycle costing in railway industry has been focused on the prediction of investment for railway vehicles. But in today, the life cycle cost, LCC, prediction on the aspect of operation and maintenance cost through whole life cycle is highly necessary. In this paper, we present a strategy for the development of life cycle cost estimation software on the aspect of maintenance strategies of railway vehicle. For this purpose, we suggested a structure of LCC software based on the UNIFE LCC model. And we developed a pilot version of software to evaluate the LCC model that we suggested for railway vehicle. We performed LCC analysis on the brake module of metro vehicle in case study and concluded that the software and model developed in this research could enough to support engineers in choosing better cost effective solutions from many alternatives.

 
페이지 저장