activity
20172021
most citedHow to Integrate Security Compliance Requirements with Agile Software Engineering at Scale?

27 citations · 51 across the 7 of their papers we have counts for

collaborators

8 papers

cs.SE20215 cited

Using Process Models to understand Security Standards

Fabiola Moyón, Daniel Méndez, Kristian Beckers +1

Many industrial software development processes today have to comply with security standards such as the IEC~62443-4-1. These standards, written in natural language, are ambiguous a…

cs.SE202127 cited

How to Integrate Security Compliance Requirements with Agile Software Engineering at Scale?

Fabiola Moyón, Daniel Méndez Fernández, Kristian Beckers +1

Integrating security into agile software development is an open issue for research and practice. Especially in strongly regulated industries, complexity increases not only when sca…

cs.SE202115 cited

Integration of Security Standards in DevOps Pipelines: An Industry Case Study

Fabiola Moyón Constante, Rafael Soares, Maria Pinto-Albuquerque +2

In the last decade, companies adopted DevOps as a fast path to deliver software products according to customer expectations, with well aligned teams and in continuous cycles. As a…

cs.SE2021

When Interactive Graphic Storytelling Fails

James Barela, Tiago Espinha Gasiba, Santiago Reinhard Suppan +2

Many people are unaware of the digital dangers that lie around each cyber-corner. Teaching people how to recognize dangerous situations is crucial, especially for those who work on…

cs.SE2021

On the Requirements for Serious Games geared towards Software Developers in the Industry

Tiago Espinha Gasiba, Kristian Beckers, Santiago Suppan +1

Teaching industry staff on cybersecurity issues is a fundamental activity that must be undertaken in order to guarantee the delivery of successful and robust products to market. Mu…

cs.CR2018

Identifying Relevant Information Cues for Vulnerability Assessment Using CVSS

Luca Allodi, Sebastian Banescu, Henning Femmer +1

The assessment of new vulnerabilities is an activity that accounts for information from several data sources and produces a `severity' score for the vulnerability. The Common Vulne…