Java Reference
In-Depth Information
environment) created for simulating the efects of the patch on the operating system and its appli-
cations. Once the testing is complete, these patches need to be applied to all systems in the orga-
nization in an organized manner. Critical security patches need to be deployed quickly to ensure
that any vulnerability in operating system is not exploited before the deployment of the patch.
4.1.4.4 Application Security
Panthera's management has given a special impetus to application security because of its growing
e-commerce operations. Panthera's management has decided to develop and deploy a custom-made
e-commerce application, which has security implemented right from its inception. he require-
ments for the application have been outlined in Section 4.2 and in Chapter 6.
4.2 outlining the Application Requirements
he requirements for the new e-commerce application are detailed in a request for proposal docu-
ment, commonly known as an RFP. An RFP is essentially an invitation to suppliers, often through
a bidding process, to submit a proposal for a speciic product or service. RFPs also include the
speciications for the desired product or service. In Web application parlance, an RFP would detail
the speciications for the desired Web application, describing some of the functional and nonfunc-
tional requirements. he RFP is usually the basis for preliminary requirements speciications by
the client/requesting organization. Panthera's requirements for the envisaged e-commerce applica-
tion are detailed in the RFP mentioned in the next section.
4.2.1 The Request for Proposal
4.2.1.1 Purpose
Panthera Retail would like to ensure that it has a strong presence on the Internet by the deployment of
a suitable e-commerce application. he e-commerce application should facilitate the sales of Panthera's
products to existing and new customers all over the United States. he e-commerce application should
ensure that customers are able to conveniently and securely order various products that Panthera
retail ofers. he e-commerce application should also facilitate the acceptance of credit card payments,
gift card payments, and the usage of discount coupon, in a user-friendly and secure manner. he
e-commerce application should also be capable of handling a large volume of transactions, as they are
expected during certain seasons of the year. Lastly, the e-commerce must be secure and be compliant
with the security compliance requirements, which are necessary for Panthera's sphere of business.
4.2.1.2 Users
he proiles of the end users and administrative users of Panthera's envisaged e-commerce applica-
tion are described in detail in Table 4.1 and Table 4.2.
4.2.1.3 Communication Interfaces
Panthera plans on establishing payment processing through PayM, a reputed credit card pay-
ment processing company, which is a subsidiary of Panthera's acquiring bank, BancoAmerica. he
Search WWH ::




Custom Search