Till sidans topp

Sidansvarig: Webbredaktion
Sidan uppdaterades: 2012-09-11 15:12

Tipsa en vän

A lingua franca for secur… - Göteborgs universitet Till startsida
Till innehåll Läs mer om hur kakor används på gu.se

A lingua franca for security by design

Paper i proceeding
Författare Alexander Van Den Berghe
Koen Yskout
Riccardo Scandariato
Wouter Joosen
Publicerad i 2018 IEEE Cybersecurity Development Conference, SecDev 2018
Publiceringsår 2018
Publicerad vid Institutionen för data- och informationsteknik (GU)
Språk en
Ämnesord Evaluation, Modelling language, Security by design, User study
Ämneskategorier Data- och informationsvetenskap


© 2018 IEEE. The principle of security by design is advocated by academia as well as industry. Unfortunately, its adoption in practice is not yet widespread. We believe a reason for this is the lack of a 'lingua franca' for security modelling. Such a language should support security specialists to precisely describe the security aspects in a software design, as well as simultaneously serve to communicate with a broader audience of stakeholders. For this paper, we have assessed how well a formally backed security modelling language we previously proposed, suits the needs of the needs of these two groups. Concretely, we report on a large user study investigating how well security novices are able to comprehend the foundations of our language. Furthermore, to assess our language's practicality, we show how it can be used to create a realistic model of authentication. We have found that our language's foundations are comprehensible to a broader audience and they allow to precisely model a design's security aspects, albeit some shortcomings requiring attention have been identified. Based on these findings, we believe that a precise yet comprehensible security by design lingua franca is within reach.

Sidansvarig: Webbredaktion|Sidan uppdaterades: 2012-09-11

På Göteborgs universitet använder vi kakor (cookies) för att webbplatsen ska fungera på ett bra sätt för dig. Genom att surfa vidare godkänner du att vi använder kakor.  Vad är kakor?