{"id":"https://openalex.org/W2086868175","doi":"https://doi.org/10.1109/espre.2014.6890525","title":"Supporting evolving security models for an agile security evaluation","display_name":"Supporting evolving security models for an agile security evaluation","publication_year":2014,"publication_date":"2014-08-01","ids":{"openalex":"https://openalex.org/W2086868175","doi":"https://doi.org/10.1109/espre.2014.6890525","mag":"2086868175"},"language":"en","primary_location":{"id":"doi:10.1109/espre.2014.6890525","is_oa":false,"landing_page_url":"https://doi.org/10.1109/espre.2014.6890525","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2014 IEEE 1st International Workshop on Evolving Security and Privacy Requirements Engineering (ESPRE)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5070598171","display_name":"Wolfgang Raschke","orcid":null},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"education","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":true,"raw_author_name":"Wolfgang Raschke","raw_affiliation_strings":["Institute for Technical Informatics, Graz University of Technology, Graz, Austria","Institute for Technical Informatics, Graz University of Technology, Graz, Austria#TAB#"],"affiliations":[{"raw_affiliation_string":"Institute for Technical Informatics, Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]},{"raw_affiliation_string":"Institute for Technical Informatics, Graz University of Technology, Graz, Austria#TAB#","institution_ids":["https://openalex.org/I4092182"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5005283767","display_name":"Massimiliano Zilli","orcid":null},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"education","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Massimiliano Zilli","raw_affiliation_strings":["Institute for Technical Informatics, Graz University of Technology, Graz, Austria","Institute for Technical Informatics, Graz University of Technology, Graz, Austria#TAB#"],"affiliations":[{"raw_affiliation_string":"Institute for Technical Informatics, Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]},{"raw_affiliation_string":"Institute for Technical Informatics, Graz University of Technology, Graz, Austria#TAB#","institution_ids":["https://openalex.org/I4092182"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5064318538","display_name":"Philip Baumgartner","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Philip Baumgartner","raw_affiliation_strings":["NXP Semiconductors Austria GmhH, Gratkorn, Austria"],"affiliations":[{"raw_affiliation_string":"NXP Semiconductors Austria GmhH, Gratkorn, Austria","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5073184991","display_name":"Johannes Loinig","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Johannes Loinig","raw_affiliation_strings":["NXP Semiconductors Austria GmhH, Gratkorn, Austria"],"affiliations":[{"raw_affiliation_string":"NXP Semiconductors Austria GmhH, Gratkorn, Austria","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5048811541","display_name":"Christian Steger","orcid":"https://orcid.org/0000-0002-4441-266X"},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"education","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Christian Steger","raw_affiliation_strings":["Institute for Technical Informatics, Graz University of Technology, Graz, Austria","Institute for Technical Informatics, Graz University of Technology, Graz, Austria#TAB#"],"affiliations":[{"raw_affiliation_string":"Institute for Technical Informatics, Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]},{"raw_affiliation_string":"Institute for Technical Informatics, Graz University of Technology, Graz, Austria#TAB#","institution_ids":["https://openalex.org/I4092182"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5081494574","display_name":"Christian Kreiner","orcid":"https://orcid.org/0000-0001-8354-8415"},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"education","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Christian Kreiner","raw_affiliation_strings":["Institute for Technical Informatics, Graz University of Technology, Graz, Austria","Institute for Technical Informatics, Graz University of Technology, Graz, Austria#TAB#"],"affiliations":[{"raw_affiliation_string":"Institute for Technical Informatics, Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]},{"raw_affiliation_string":"Institute for Technical Informatics, Graz University of Technology, Graz, Austria#TAB#","institution_ids":["https://openalex.org/I4092182"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5070598171"],"corresponding_institution_ids":["https://openalex.org/I4092182"],"apc_list":null,"apc_paid":null,"fwci":3.9445,"has_fulltext":false,"cited_by_count":9,"citation_normalized_percentile":{"value":0.94140193,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":"9","issue":null,"first_page":"31","last_page":"36"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9984999895095825,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9965000152587891,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/agile-software-development","display_name":"Agile software development","score":0.7418326139450073},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6664751768112183},{"id":"https://openalex.org/keywords/security-engineering","display_name":"Security engineering","score":0.6442416906356812},{"id":"https://openalex.org/keywords/software-security-assurance","display_name":"Software security assurance","score":0.6018435955047607},{"id":"https://openalex.org/keywords/security-information-and-event-management","display_name":"Security information and event management","score":0.5934484601020813},{"id":"https://openalex.org/keywords/computer-security-model","display_name":"Computer security model","score":0.5749854445457458},{"id":"https://openalex.org/keywords/security-testing","display_name":"Security testing","score":0.5476934909820557},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5248976945877075},{"id":"https://openalex.org/keywords/agile-usability-engineering","display_name":"Agile usability engineering","score":0.5206367373466492},{"id":"https://openalex.org/keywords/agile-unified-process","display_name":"Agile Unified Process","score":0.520308256149292},{"id":"https://openalex.org/keywords/security-service","display_name":"Security service","score":0.4858996272087097},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.4767497479915619},{"id":"https://openalex.org/keywords/cloud-computing-security","display_name":"Cloud computing security","score":0.3869568705558777},{"id":"https://openalex.org/keywords/information-security","display_name":"Information security","score":0.2961721420288086},{"id":"https://openalex.org/keywords/software-development-process","display_name":"Software development process","score":0.27973300218582153},{"id":"https://openalex.org/keywords/software-engineering","display_name":"Software engineering","score":0.25917690992355347},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.2218087911605835},{"id":"https://openalex.org/keywords/software-development","display_name":"Software development","score":0.21025073528289795},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.11580780148506165}],"concepts":[{"id":"https://openalex.org/C14185376","wikidata":"https://www.wikidata.org/wiki/Q30232","display_name":"Agile software development","level":2,"score":0.7418326139450073},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6664751768112183},{"id":"https://openalex.org/C13159133","wikidata":"https://www.wikidata.org/wiki/Q365674","display_name":"Security engineering","level":5,"score":0.6442416906356812},{"id":"https://openalex.org/C62913178","wikidata":"https://www.wikidata.org/wiki/Q7554361","display_name":"Software security assurance","level":4,"score":0.6018435955047607},{"id":"https://openalex.org/C103377522","wikidata":"https://www.wikidata.org/wiki/Q3493999","display_name":"Security information and event management","level":4,"score":0.5934484601020813},{"id":"https://openalex.org/C121822524","wikidata":"https://www.wikidata.org/wiki/Q5157582","display_name":"Computer security model","level":2,"score":0.5749854445457458},{"id":"https://openalex.org/C195518309","wikidata":"https://www.wikidata.org/wiki/Q13424265","display_name":"Security testing","level":5,"score":0.5476934909820557},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5248976945877075},{"id":"https://openalex.org/C36837802","wikidata":"https://www.wikidata.org/wiki/Q17011481","display_name":"Agile usability engineering","level":5,"score":0.5206367373466492},{"id":"https://openalex.org/C87813535","wikidata":"https://www.wikidata.org/wiki/Q956418","display_name":"Agile Unified Process","level":5,"score":0.520308256149292},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.4858996272087097},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.4767497479915619},{"id":"https://openalex.org/C184842701","wikidata":"https://www.wikidata.org/wiki/Q370563","display_name":"Cloud computing security","level":3,"score":0.3869568705558777},{"id":"https://openalex.org/C527648132","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information security","level":2,"score":0.2961721420288086},{"id":"https://openalex.org/C180152950","wikidata":"https://www.wikidata.org/wiki/Q2904257","display_name":"Software development process","level":4,"score":0.27973300218582153},{"id":"https://openalex.org/C115903868","wikidata":"https://www.wikidata.org/wiki/Q80993","display_name":"Software engineering","level":1,"score":0.25917690992355347},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.2218087911605835},{"id":"https://openalex.org/C529173508","wikidata":"https://www.wikidata.org/wiki/Q638608","display_name":"Software development","level":3,"score":0.21025073528289795},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.11580780148506165},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/espre.2014.6890525","is_oa":false,"landing_page_url":"https://doi.org/10.1109/espre.2014.6890525","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2014 IEEE 1st International Workshop on Evolving Security and Privacy Requirements Engineering (ESPRE)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320310430","display_name":"TU Graz, Internationale Beziehungen und Mobilit\u00e4tsprogramme","ror":"https://ror.org/00d7xrm67"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":9,"referenced_works":["https://openalex.org/W57932517","https://openalex.org/W1569908354","https://openalex.org/W1968165445","https://openalex.org/W2083210338","https://openalex.org/W2084622410","https://openalex.org/W2124140478","https://openalex.org/W6642171544","https://openalex.org/W6678520066","https://openalex.org/W6990905825"],"related_works":["https://openalex.org/W1811024770","https://openalex.org/W4230385779","https://openalex.org/W2509045890","https://openalex.org/W2017116761","https://openalex.org/W2375023814","https://openalex.org/W3003273405","https://openalex.org/W2028922190","https://openalex.org/W1963623648","https://openalex.org/W2018644264","https://openalex.org/W4307601327"],"abstract_inverted_index":{"At":[0],"present,":[1],"security-related":[2],"engineering":[3],"usually":[4],"requires":[5],"a":[6,28,64,96,113],"big":[7],"up-front":[8],"design":[9,48,69],"(BUFD)":[10],"regarding":[11],"security":[12,15,29,68,80,102,109],"requirements":[13],"and":[14,70],"design.":[16],"In":[17,38,73],"addition":[18],"to":[19,35,44,57,112],"the":[20,23,26,46,50,84,107],"BUFD,":[21],"at":[22],"end":[24],"of":[25,95],"development,":[27],"evaluation":[30,71,81,110],"process":[31,111],"can":[32],"take":[33],"up":[34],"several":[36],"months.":[37],"today's":[39],"volatile":[40],"markets":[41],"customers":[42],"want":[43],"influence":[45],"software":[47],"during":[49],"development":[51],"process.":[52],"Agile":[53],"processes":[54],"have":[55],"proven":[56],"support":[58],"these":[59],"demands.":[60],"Nevertheless,":[61],"there":[62],"is":[63,90],"clash":[65],"with":[66],"traditional":[67],"processes.":[72],"this":[74],"paper,":[75],"we":[76],"propose":[77],"an":[78,93],"agile":[79,108],"method":[82,89],"for":[83,100],"Common":[85],"Criteria":[86],"standard.":[87],"This":[88,104],"complemented":[91],"by":[92],"implementation":[94],"change":[97],"detection":[98],"analysis":[99],"model-based":[101],"requirements.":[103],"system":[105],"facilitates":[106],"high":[114],"degree.":[115]},"counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2020,"cited_by_count":1},{"year":2019,"cited_by_count":1},{"year":2018,"cited_by_count":1},{"year":2017,"cited_by_count":1},{"year":2016,"cited_by_count":1},{"year":2015,"cited_by_count":3}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
