Decision Support Model for Software Source Code Audit, A Case Study
source code audit, programa, AHP-FUZZY, information security
Amid the constant growth of software development for the market and increasingly tight
deadlines driven by agile methodologies, the risks embedded in these software systems
have been escalating. Criminals exploit vulnerabilities to perpetrate cybercrimes against
companies, resulting in significant financial losses and reputational damage to organizations.
In light of this backdrop, this research aimed to comprehend the involved risks and
explore the methods, techniques, and tools available to validate these risks in a market
software. Following this validation, it became evident that existing studies address these
issues in a compartmentalized manner and do not offer an objective approach for prioritization
within a complex environment. In response to this challenge, this study employed
the multicriteria decision support method AHP-FUZZY to aid in ranking risks. The
outcome yielded substantial insight, pointing to the "Web" module alongside the "Vulnerability"
risk criterion as requiring prioritization. This decision support model emerges as
a valuable contribution for decision-makers, particularly in software engineering.