Security

Calling security requirements non-functional requirements may sound counterintuitive to security engineers, but in the traditional systems engineering sense they are non-functional. Requirements management has to do with the process of gathering requirements, and then analyzing and decomposing those requirements to be fed into a system design. In many cases, this requires derivation of requirements from a source into more system-specific requirements.

Finding the sources of security requirements is a primary objective when handling security non-functional requirements. One of these sources is threat modeling. 

Get Practical Internet of Things Security - Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.