[SC-L] Fwd: [SEWORLD] SWEBOK Version 3 Call for Reviewers

Goertzel, Karen [USA] goertzel_karen at bah.com
Wed Mar 7 10:12:14 EST 2012

Oops. I meant to say "touching faith" not "touching lack of faith".

Karen Mercedes Goertzel, CISSP


From: "Goertzel, Karen [USA]" <goertzel_karen at bah.com<mailto:goertzel_karen at bah.com>>
Date: Wed, 7 Mar 2012 09:53:18 -0500
To: Martin Gilje Jaatun <secse-chair at sislab.no<mailto:secse-chair at sislab.no>>, Secure Code Mailing List <SC-L at securecoding.org<mailto:SC-L at securecoding.org>>
Subject: Re: [SC-L] Fwd: [SEWORLD] SWEBOK Version 3 Call for Reviewers

Unfortunately, it seems like the SWEBOK folks still believe that if you have high-quality software, that will be sufficient to assure robustness against intentional threats. It also shows a touching lack of faith that there will never be an malicious participant in the SDLC intentionally sabotaging or subverting the code, test results, etc.

Karen Mercedes Goertzel, CISSP
Lead Associate
Booz Allen Hamilton
goertzel_karen at bah.com<mailto:goertzel_karen at bah.com>

"I love deadlines. I like the whooshing sound they make as they fly by."
- Douglas Adams
From: sc-l-bounces at securecoding.org<mailto:sc-l-bounces at securecoding.org> [sc-l-bounces at securecoding.org<mailto:sc-l-bounces at securecoding.org>] on behalf of Martin Gilje Jaatun [secse-chair at sislab.no<mailto:secse-chair at sislab.no>]
Sent: 05 March 2012 07:02
To: Secure Coding
Subject: [SC-L] Fwd: [SEWORLD] SWEBOK Version 3 Call for Reviewers

Hi SC-L,

I would have hoped that "Software Security" should have been a topic area in SWEBOK, right alongside "Software Quality", but it doesn't look like it...


-------- Opprinnelig melding --------
Emne:   [SEWORLD] SWEBOK Version 3 Call for Reviewers
Dato:   Fri, 2 Mar 2012 10:53:26 -0700
Fra:    Dick Fairley <dickfairley at gmail.com><mailto:dickfairley at gmail.com>
Til:    seworld at sigsoft.org<mailto:seworld at sigsoft.org>

*Call for Reviewers of Three New Knowledge Area Descriptions for the*

*Guide to the Software Engineering Body of Knowledge*

The IEEE Computer Society is now soliciting public review comments on threeknowledge areas (KAs) for Version 3 of the Guide to the Software
Engineering Body of Knowledge (SWEBOK V3).  SWEBOK V3 is an update to the
2004 version of the SWEBOK Guide, which is also known as Technical Report
ISO/IEC TR 19759.  The 15 KAs in SWEBOK V3 are being published
incrementally as they become available for review.

The purposes of the SWEBOK Guide are: to characterize the contents of the
software engineering discipline; to promote a consistent view of software
engineering worldwide; to clarify the place of, and set the boundary of
software engineering with respect to other disciplines; to provide a
foundation for training materials and curriculum development; and to
provide a basis for certification and licensing of software engineers.

Three new KAs are now available for review (Software Engineering Methods
and Models; Software Maintenance; and Mathematical Foundations). These KAs
can be reviewed and comments can be submitted at:


The review period for these KAs extends from March 2 to March 31, 2012.

Three of the SWEBOK V3 KAs (Computing Foundations, Software Construction,
and Software Configuration Management) have been reviewed and the review
period is closed; the KA editors are resolving the public review
comments.  Resolution
of submitted comments for all KAs will be displayed on the SWEBOK V3 Web
site as they become available.  All review comments, as well the names and
countries of the reviewers providing the comments, will be made public.  Email
addresses, affiliations, and other identifying information of reviewers
will not be made public.

Present and potential reviewers will be notified when additional KAs becomeavailable for review.  Each KA, when posted, will be available for review
for 30 calendar days from the date of posting.

 For further information or help please contact Dick Fairley, chair of the
SWEBOK V3 Change Control Board at d.fairley at computer.org<mailto:d.fairley at computer.org>.

To contribute to SEWORLD, send your submission to
mailto:seworld at sigsoft.orghttp://www.sigsoft.org/seworld provides more
information on SEWORLD as well as a complete archive of
messages posted to the list.

More information about the SC-L mailing list