Javascript must be enabled to continue!
An Empirical Study of Security Practices for Microservices Systems
View through CrossRef
Despite the numerous benefits of microservices systems, security has been a critical issue in such systems. Several factors explain this difficulty, including a knowledge gap among microservices practitioners on properly securing a microservices system. To (partially) bridge this gap, we conducted an empirical study to manually analyze 861 security points collected from 10 GitHub open-source microservices systems and Stack Overflow posts concerning security in microservices systems, leading to a catalog of 28 microservices security practices. We then ran a survey with 63 microservices practitioners to evaluate the usefulness of these 28 practices. Our findings demonstrate that the survey respondents affirmed the usefulness of the 28 practices. We believe that the catalog of microservices security practices can serve as a valuable resource for microservices practitioners to more effectively address security issues in microservices systems. It can also inform the research community of the required or less explored areas to develop microservices-specific security practices and tools.
Title: An Empirical Study of Security Practices for Microservices Systems
Description:
Despite the numerous benefits of microservices systems, security has been a critical issue in such systems.
Several factors explain this difficulty, including a knowledge gap among microservices practitioners on properly securing a microservices system.
To (partially) bridge this gap, we conducted an empirical study to manually analyze 861 security points collected from 10 GitHub open-source microservices systems and Stack Overflow posts concerning security in microservices systems, leading to a catalog of 28 microservices security practices.
We then ran a survey with 63 microservices practitioners to evaluate the usefulness of these 28 practices.
Our findings demonstrate that the survey respondents affirmed the usefulness of the 28 practices.
We believe that the catalog of microservices security practices can serve as a valuable resource for microservices practitioners to more effectively address security issues in microservices systems.
It can also inform the research community of the required or less explored areas to develop microservices-specific security practices and tools.
Related Results
Systematic Mapping of Monolithic Applications to Microservices Architecture
Systematic Mapping of Monolithic Applications to Microservices Architecture
Purpose- The aim of this paper to provide the solution
microservices architecture as a popular alternative to monolithic
architecture. It discusses the advantages of microservices ...
Information Security in Artificial Intelligence: A Study of the possible intersection
Information Security in Artificial Intelligence: A Study of the possible intersection
1. IntroductionArtificial Intelligence or A.I attempts to understand intelligent entities, and strives to build ones. And it is obvious that computers with human-level intelligence...
Development Tasks of AI-based Security Industry
Development Tasks of AI-based Security Industry
Recently, the government's interest in industries utilizing AI has been amplified, with initiatives such as announcing a roadmap aiming to achieve the goal of becoming the world's ...
Security in cloud-native microservices: The critical foundation
Security in cloud-native microservices: The critical foundation
Cloud-native microservices architectures have revolutionized application development but introduce significant security challenges due to their distributed nature. This article exa...
Patterns for Migration of SOA Based Applications to Microservices Architecture
Patterns for Migration of SOA Based Applications to Microservices Architecture
Service oriented architecture (SOA) has been widely used in the design of enterprise applications over the last two decades. Though SOA has become popular in the integration of mul...
ESSENTIAL SECURITY PRACTICES FOR FORTIFYING MOBILE APPS
ESSENTIAL SECURITY PRACTICES FOR FORTIFYING MOBILE APPS
“Essential Security Practices for Fortifying Mobile Apps” is a definitive guide designed to empower developers, security professionals, and organizations with the knowledge and too...
Cytoscape Cyberinfrastructure: Leveraging Microservices to the Cloud and Beyond (Chapter 1)
Cytoscape Cyberinfrastructure: Leveraging Microservices to the Cloud and Beyond (Chapter 1)
Cytoscape is an indispensable tool for network data analysis and visualization. One of Cytoscape’s greatest strengths is that it is powered by a vibrant array of developer-contribu...
Scalable Microservices Architecture: Leadership Approaches for High-Performance Retail Systems
Scalable Microservices Architecture: Leadership Approaches for High-Performance Retail Systems
The rapid evolution of retail systems in the digital age necessitates the adoption of scalable microservices architectures to meet the demands of high-performance and responsive pl...

