Time
7 hours 33 minutes
Difficulty
Advanced
CEU/CPE
8

Video Transcription

00:01
greetings and welcome to Sudbury Cop TIA. Certified Van Security Practitioners Certification Preparation course.
00:11
This is a continuation Off Marginal six was his title. Secure Development.
00:16
These are objectives which encompasses this particular model itself. We conquer T on a discussion by taking a look at understanding requirements for software development in this particular presentation
00:33
for before we get going, let's take a look at a pre assessment course and bring her here,
00:37
and the question is as follows.
00:40
What's the name of a model that was a first assistant of every life size model to be used widely and software engineering to ensure the success of the project? Is a spiral morrow
00:51
be a big bang model seat, the waterfall model or D V model?
00:58
If you select that, See, you're absolutely correct is called a waterfall Martin.
01:03
Now, during this presidency, we're gonna take a look at a number of different what we call system development lifecycle models that you need to be a way off.
01:15
So without further ado, let's begin. I discuss about taking a look at the very first modern list of here, which is called a waterfall model.
01:23
Now, the waterfall approach with the first system of them a life size model to be used while in software engineering. To ensure the success of the project,
01:32
the waterfall approached. The whole process of software development is divine to separate phases
01:38
in this water form are typically the outcome. A one act
01:42
acts only input for the next phase sequentially.
01:49
Now they're opposite. There are some advantages to the waterfall mar simply need to use and understand
01:56
Phase is a process and complete it once one of the time
02:00
works well for smaller project where where crime is our very well understood,
02:05
clearly defined stages Well, under Stuart milestones, just the name of a few off some of the advantages.
02:13
Now, when you think about advantages, obviously gonna be some disadvantages that we need to highlight and they're gonna be highlighted in the very next slot.
02:19
And so what are some have disadvantages. They are as follows.
02:24
No working software's produce until late doing the life cycle,
02:29
High amount of risk and uncertainty can happen, as was all that
02:32
not a good model for complex and object oriented type projects.
02:38
Poor martyr, fel low and ongoing projects
02:40
not suitable for project where requirements are at a moderate to high risk of changing so risks and uncertainties. High with this particular process, tomorrow
02:50
is different a measure process or progress within the stages,
02:54
and it cannot accommodate the changing requirements. One of the issues you have with the waterfall model,
03:05
our next model, that we're going time to take a look at his car irritant.
03:08
Now this particular model starts with a simple implementation of of a subset of the software carpets and basically what it doesn't enhance the involving version until the full system is implemented
03:21
at each generation, design modifications made and new functional capabilities are at it. The basic idea behind this Mara is to develop a system through a repeated cycle
03:31
and in smaller portions at a time. Other words. Incremental.
03:37
Let's not take a look at something what we call the advantage of this particular model.
03:40
Some working functionality can be developed quickly and early in the life cycle.
03:46
Results obtained early in periodically
03:50
parallel developments can be planned.
03:53
Progress can be obviously be magic,
03:54
less cost. It changed a scope and requirements
03:59
tested any bugging. Doing smaller iterations is easy.
04:02
Risk identified, a bizarre doing doing inaugurations, and each iteration is an easy manage type. Milestone
04:11
is easier managed arrest high risk part is done first.
04:15
This now brings us to water someone again. Disadvantages of this particular model that we need to take a look at
04:24
more Resource is may be required in this case,
04:27
although costs of changes lesser, but it's not very suitable for changing requirements.
04:32
Maur manager. Attention is required for this particular model.
04:36
Sense of architectural design issues may arrive because not all of the crimes I gather in the beginning of the entire life cycle
04:44
defining increments may require definition of the complete system
04:49
not suitable for smaller projects.
04:53
Manager Complexity is MAWR. In this particular case,
04:56
the end project into the project may not be known for which is the risk
05:01
highlights your resources required for risk analysis. With this particular model again looking at the disadvantages,
05:10
the next model won't take a look. It's called a spiral model.
05:13
The spiral model combines idea a curative
05:16
development with systematic control aspects of the war for model.
05:21
The spiral model is a combination of a spirited mark development process or federation process and sequential linear development model.
05:30
The waterfall model would have very high emphasis on Rhys analysis. It allows in criminal release of the product or incremental refinements through each generation around the spiral.
05:43
Let's take a look at some of the advantages of the spiral model.
05:46
Changeable promise can be accommodated in this case. Ah la extensive use off photo types.
05:53
Real crimes can be captured more accurately.
05:56
You see the system early
05:59
development. We divide into smaller parts, and the risk it pause can be developed earlier, which helps in better risk management.
06:05
Let's look at the disadvantage of the spiral model.
06:10
Imagine more complex
06:12
into the project may not be known early,
06:15
not suitable for new Arlo projects, and can be expensive for small projects.
06:19
Processes opposite in this case could be very complex,
06:24
and the spiral can go on if indefinitely. In other words,
06:29
and a large number of immediate stages were quite assess it. Documentation.
06:33
The next model want to take a look. It's called a B model.
06:35
This is assistant of Life Simon, where the execution of processes happens in this exponential manner in a V shape is also known as a verification, verification and validation model. Now this is extension off the waterfall Mara and is based on associates of testing phases for each course part of development stage.
06:56
This means that
06:57
airy phase in development cycle, there's a direct associate testing phase. This is a highly disciplined Morrow, and the next phase starts on Lee after completion off the previous phase.
07:10
Let's look at some of the advantage of the V model is a highly disciplined model and face it all. Complete it one at a time
07:16
works well for a smaller party where crimes are very where understood,
07:20
simple, easy to understand and use
07:24
easily manage due to the originator of the other bottle. Each phase has specific levels and a review process.
07:32
No work it's always produce until late doing the life cycle
07:38
the next month is called the Big Bang model.
07:40
The Big Bang is a sin of every system of every lifetime of where you do not follow any specific process. Development just starts with the required money and effort as the input, and the output is a soft wood about what software developed, which may or may not be as per customer promise
07:57
you that this model followed by smaller, smaller part where the development team are very small,
08:03
so looking at the Big Bang. Modern terms of vintage is this is a very simple morrow.
08:09
Little, no planning require easily manage. Very few resources required gifts. Let's ability to the developer is a good learning A for new commerce or students.
08:18
This brings us to some of the disadvantages of the Big Bang. Very high risk and uncertainty, not a good model for complex and object Orient projects. Poor martyr, full loan and ongoing projects can turn out to be very expensive if the requirements are mis understood.
08:35
Another thing is very important to the potato. We look at software development. We want to make sure we engage in what we call Secur cold practices. Secure Code is the practice of writing software that's protected from vulnerability. Other words. Witnesses. It's important because for also over whether you write code that runs on mobile devices,
08:54
your personal computer service or embedded devices, we need to engage in what we call Secur co practices.
09:00
So you could need because so you can come for me with the techniques and tools to support the practice
09:05
opposite. There's some risk of insecure software. You have been out of service to a single user. It can compromise your secrets who resulted in the loss of service, damage to the system of 1000 of users and also loss of life because of enduring opposite widow realize there are risks involved in secure code.
09:26
Doing this presentation, we took a look at it took a looking at several different models, not just mentioned. We took a look at the Big Bang model. We learned about that model. We also to discuss other models is where we learned that you need to understand and apply software vulnerabilities. We discussed the fact that you understand the requirements for software development as well.
09:45
In our upcoming presentation will continue our discussion
09:48
up section, to which we're gonna continue to focus upon understand requirements for software development in the next video. Again, I wanna thank you very much attention to detail, and I look forward to seeing you on the very next video

Up Next

CompTIA CASP+

In this course, you will learn all of the domains and concepts associated with the CompTIA Advanced Security Practitioner CAS-003 CASP+ Exam. Through this course you will be fully prepared to sit for your CompTIA A+ Exam!

Instructed By

Instructor Profile Image
Jim Hollis
Independent Contractor
Instructor