Abdulrazeg A.A.Norwawi N.M.Basir N.2024-05-292024-05-292014978148000000010.1109/ICACSIS.2014.70658382-s2.0-84946686157https://www.scopus.com/inward/record.uri?eid=2-s2.0-84946686157&doi=10.1109%2fICACSIS.2014.7065838&partnerID=40&md5=8bb91a5b95ae971d551131c88ff96aedhttps://oarep.usim.edu.my/handle/123456789/9776Technological advancements and rapid growth in the use of the Internet by the society have had a huge impact on information security. It has triggered the need for a major shift in the way web applications are developed. The high level security of these applications is crucial to their success. Therefore, information security has become a core requirement for producing trustworthy software driven by the need to guard critical assets. To develop a web application with adequate security features, it is highly recommended to capture security requirements early in the development lifecycle. In this paper, we propose a way of extending the V-Model requirements engineering phase to aid developers to engineer security requirements for a web application being developed, as well as, handling the security test planning. The aim is to support the proactive definition of security requirements by integrating security requirements engineering (SRE) activities with requirements engineering (RE) activities of the V-model. � 2014 IEEE.en-USSecurity requirementsSecurity requirements engineeringV-ModelWeb ApplicationMobile securityRequirements engineeringSocial networking (online)World Wide WebIntegrating securitySecurity featuresSecurity requirementsSecurity requirements engineeringTechnological advancementTrustworthy softwaresV-modelWEB applicationSecurity of dataExtending V-model practices to support SRE to build secure web applicationConference Paper2132187065838