{"id":"https://openalex.org/W2956607763","doi":"https://doi.org/10.1109/ntms.2019.8763845","title":"Managing the Secure Software Development","display_name":"Managing the Secure Software Development","publication_year":2019,"publication_date":"2019-06-01","ids":{"openalex":"https://openalex.org/W2956607763","doi":"https://doi.org/10.1109/ntms.2019.8763845","mag":"2956607763"},"language":"en","primary_location":{"id":"doi:10.1109/ntms.2019.8763845","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ntms.2019.8763845","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 10th IFIP International Conference on New Technologies, Mobility and Security (NTMS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5035998968","display_name":"Radek Fujdiak","orcid":"https://orcid.org/0000-0002-8319-0633"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Radek Fujdiak","raw_affiliation_strings":["Trustport, Brno, Czech Republic"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Trustport, Brno, Czech Republic","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5048922968","display_name":"Petr Ml\u00fdnek","orcid":"https://orcid.org/0000-0002-8565-1587"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Petr Mlynek","raw_affiliation_strings":["Trustport, Brno, Czech Republic"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Trustport, Brno, Czech Republic","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5079307739","display_name":"Pavel Mrnustik","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Pavel Mrnustik","raw_affiliation_strings":["Trustport, Brno, Czech Republic","Trustport, Brno, Czech republic"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Trustport, Brno, Czech Republic","institution_ids":[]},{"raw_affiliation_string":"Trustport, Brno, Czech republic","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5006462596","display_name":"Maro\u0161 Barabas","orcid":"https://orcid.org/0000-0002-8557-9474"},"institutions":[{"id":"https://openalex.org/I60587646","display_name":"Brno University of Technology","ror":"https://ror.org/03613d656","country_code":"CZ","type":"education","lineage":["https://openalex.org/I60587646"]}],"countries":["CZ"],"is_corresponding":false,"raw_author_name":"Maros Barabas","raw_affiliation_strings":["Department of Telecommunications, Brno University of Technology, Brno, Czech Republic","Brno University of Technology, Dept. of Telecommunications, Brno, Czech Republic"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Telecommunications, Brno University of Technology, Brno, Czech Republic","institution_ids":["https://openalex.org/I60587646"]},{"raw_affiliation_string":"Brno University of Technology, Dept. of Telecommunications, Brno, Czech Republic","institution_ids":["https://openalex.org/I60587646"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5063517624","display_name":"Petr Bla\u017eek","orcid":"https://orcid.org/0000-0001-7699-1531"},"institutions":[{"id":"https://openalex.org/I60587646","display_name":"Brno University of Technology","ror":"https://ror.org/03613d656","country_code":"CZ","type":"education","lineage":["https://openalex.org/I60587646"]}],"countries":["CZ"],"is_corresponding":false,"raw_author_name":"Petr Blazek","raw_affiliation_strings":["Department of Telecommunications, Brno University of Technology, Brno, Czech Republic","Brno University of Technology, Dept. of Telecommunications, Brno, Czech Republic"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Telecommunications, Brno University of Technology, Brno, Czech Republic","institution_ids":["https://openalex.org/I60587646"]},{"raw_affiliation_string":"Brno University of Technology, Dept. of Telecommunications, Brno, Czech Republic","institution_ids":["https://openalex.org/I60587646"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5061396830","display_name":"Filip Borcik","orcid":null},"institutions":[{"id":"https://openalex.org/I60587646","display_name":"Brno University of Technology","ror":"https://ror.org/03613d656","country_code":"CZ","type":"education","lineage":["https://openalex.org/I60587646"]}],"countries":["CZ"],"is_corresponding":false,"raw_author_name":"Filip Borcik","raw_affiliation_strings":["Department of Telecommunications, Brno University of Technology, Brno, Czech Republic","Brno University of Technology, Dept. of Telecommunications, Brno, Czech Republic"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Telecommunications, Brno University of Technology, Brno, Czech Republic","institution_ids":["https://openalex.org/I60587646"]},{"raw_affiliation_string":"Brno University of Technology, Dept. of Telecommunications, Brno, Czech Republic","institution_ids":["https://openalex.org/I60587646"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5020797561","display_name":"Ji\u0159\u00ed Mi\u0161urec","orcid":"https://orcid.org/0000-0002-5023-7757"},"institutions":[{"id":"https://openalex.org/I60587646","display_name":"Brno University of Technology","ror":"https://ror.org/03613d656","country_code":"CZ","type":"education","lineage":["https://openalex.org/I60587646"]}],"countries":["CZ"],"is_corresponding":false,"raw_author_name":"Jiri Misurec","raw_affiliation_strings":["Department of Telecommunications, Brno University of Technology, Brno, Czech Republic","Brno University of Technology, Dept. of Telecommunications, Brno, Czech Republic"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Telecommunications, Brno University of Technology, Brno, Czech Republic","institution_ids":["https://openalex.org/I60587646"]},{"raw_affiliation_string":"Brno University of Technology, Dept. of Telecommunications, Brno, Czech Republic","institution_ids":["https://openalex.org/I60587646"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.5021,"has_fulltext":false,"cited_by_count":38,"citation_normalized_percentile":{"value":0.83109136,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"4"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9990000128746033,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9990000128746033,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12423","display_name":"Software Reliability and Analysis Research","score":0.9958000183105469,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.994700014591217,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/software-security-assurance","display_name":"Software security assurance","score":0.6724344491958618},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.628393828868866},{"id":"https://openalex.org/keywords/software-development-process","display_name":"Software development process","score":0.5547090768814087},{"id":"https://openalex.org/keywords/security-testing","display_name":"Security testing","score":0.5515848398208618},{"id":"https://openalex.org/keywords/software-development","display_name":"Software development","score":0.520689845085144},{"id":"https://openalex.org/keywords/software-deployment","display_name":"Software deployment","score":0.5078468918800354},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5048378109931946},{"id":"https://openalex.org/keywords/software-engineering","display_name":"Software engineering","score":0.4428562521934509},{"id":"https://openalex.org/keywords/systems-development-life-cycle","display_name":"Systems development life cycle","score":0.4279135465621948},{"id":"https://openalex.org/keywords/application-security","display_name":"Application security","score":0.4176226258277893},{"id":"https://openalex.org/keywords/security-information-and-event-management","display_name":"Security information and event management","score":0.35320526361465454},{"id":"https://openalex.org/keywords/security-service","display_name":"Security service","score":0.34192126989364624},{"id":"https://openalex.org/keywords/process-management","display_name":"Process management","score":0.33037352561950684},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.319765567779541},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.26931867003440857},{"id":"https://openalex.org/keywords/cloud-computing-security","display_name":"Cloud computing security","score":0.2404438555240631},{"id":"https://openalex.org/keywords/information-security","display_name":"Information security","score":0.22251465916633606}],"concepts":[{"id":"https://openalex.org/C62913178","wikidata":"https://www.wikidata.org/wiki/Q7554361","display_name":"Software security assurance","level":4,"score":0.6724344491958618},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.628393828868866},{"id":"https://openalex.org/C180152950","wikidata":"https://www.wikidata.org/wiki/Q2904257","display_name":"Software development process","level":4,"score":0.5547090768814087},{"id":"https://openalex.org/C195518309","wikidata":"https://www.wikidata.org/wiki/Q13424265","display_name":"Security testing","level":5,"score":0.5515848398208618},{"id":"https://openalex.org/C529173508","wikidata":"https://www.wikidata.org/wiki/Q638608","display_name":"Software development","level":3,"score":0.520689845085144},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.5078468918800354},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5048378109931946},{"id":"https://openalex.org/C115903868","wikidata":"https://www.wikidata.org/wiki/Q80993","display_name":"Software engineering","level":1,"score":0.4428562521934509},{"id":"https://openalex.org/C120617098","wikidata":"https://www.wikidata.org/wiki/Q559486","display_name":"Systems development life cycle","level":5,"score":0.4279135465621948},{"id":"https://openalex.org/C77109596","wikidata":"https://www.wikidata.org/wiki/Q4781497","display_name":"Application security","level":5,"score":0.4176226258277893},{"id":"https://openalex.org/C103377522","wikidata":"https://www.wikidata.org/wiki/Q3493999","display_name":"Security information and event management","level":4,"score":0.35320526361465454},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.34192126989364624},{"id":"https://openalex.org/C195094911","wikidata":"https://www.wikidata.org/wiki/Q14167904","display_name":"Process management","level":1,"score":0.33037352561950684},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.319765567779541},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.26931867003440857},{"id":"https://openalex.org/C184842701","wikidata":"https://www.wikidata.org/wiki/Q370563","display_name":"Cloud computing security","level":3,"score":0.2404438555240631},{"id":"https://openalex.org/C527648132","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information security","level":2,"score":0.22251465916633606},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ntms.2019.8763845","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ntms.2019.8763845","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 10th IFIP International Conference on New Technologies, Mobility and Security (NTMS)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Responsible consumption and production","id":"https://metadata.un.org/sdg/12","score":0.5699999928474426}],"awards":[],"funders":[{"id":"https://openalex.org/F4320315323","display_name":"Technology Agency of the Czech Republic","ror":null}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":48,"referenced_works":["https://openalex.org/W157692876","https://openalex.org/W819538914","https://openalex.org/W1529377943","https://openalex.org/W1584659942","https://openalex.org/W1901141701","https://openalex.org/W1968488071","https://openalex.org/W1976655797","https://openalex.org/W1978591382","https://openalex.org/W1987061089","https://openalex.org/W1993379688","https://openalex.org/W2032347336","https://openalex.org/W2036149274","https://openalex.org/W2065461065","https://openalex.org/W2101186143","https://openalex.org/W2103107119","https://openalex.org/W2122410182","https://openalex.org/W2126762719","https://openalex.org/W2126847279","https://openalex.org/W2143509589","https://openalex.org/W2165776486","https://openalex.org/W2168740635","https://openalex.org/W2169187289","https://openalex.org/W2183445937","https://openalex.org/W2184100178","https://openalex.org/W2276802311","https://openalex.org/W2341648618","https://openalex.org/W2368165405","https://openalex.org/W2402144811","https://openalex.org/W2565628643","https://openalex.org/W2579243772","https://openalex.org/W2606310092","https://openalex.org/W2618073834","https://openalex.org/W2623293810","https://openalex.org/W2776507884","https://openalex.org/W2888189007","https://openalex.org/W2930508541","https://openalex.org/W2953384591","https://openalex.org/W2987551686","https://openalex.org/W2994250789","https://openalex.org/W4297983578","https://openalex.org/W4302234343","https://openalex.org/W6631731596","https://openalex.org/W6633699225","https://openalex.org/W6681042535","https://openalex.org/W6685888060","https://openalex.org/W6708018003","https://openalex.org/W6713134421","https://openalex.org/W6761088107"],"related_works":["https://openalex.org/W2120086576","https://openalex.org/W2164920192","https://openalex.org/W896362041","https://openalex.org/W2018644264","https://openalex.org/W3189065608","https://openalex.org/W2031957425","https://openalex.org/W4230385779","https://openalex.org/W4313307479","https://openalex.org/W2056275442","https://openalex.org/W3208699506"],"abstract_inverted_index":{"Nowadays,":[0],"software":[1,32,50],"development":[2,51],"is":[3,66,77,138],"a":[4,67,182],"more":[5],"complex":[6],"process":[7,210],"than":[8],"ever":[9],"was":[10],"and":[11,34,39,89,92,117,129,145,158,184,189,204],"it":[12],"faces":[13],"the":[14,21,36,42,54,57,100,114,143,151,162,168,174,198,208],"challenges,":[15],"where":[16],"security":[17,25,48,147,195],"became":[18,27,41],"one":[19],"of":[20,31,47,56,153,171,173],"most":[22],"crucial.":[23],"The":[24,45,94,179],"issues":[26],"an":[28,139],"essential":[29],"part":[30],"engineers":[33],"understanding":[35],"vulnerabilities,":[37],"risks":[38],"others":[40],"everyday":[43],"bread.":[44],"needs":[46],"in":[49,53,71],"resulted":[52],"creation":[55],"so-called":[58],"Secure":[59],"Software":[60,73,109],"Development":[61,74,110],"Life":[62,176],"Cycle":[63,177],"(SSDLC).":[64],"This":[65,136],"methodological":[68],"concept":[69],"included":[70],"classical":[72],"Life-Cycle,":[75],"which":[76,112],"described":[78],"by":[79],"five":[80],"main":[81],"phases":[82],"-":[83],"analysis,":[84],"design,":[85],"implementation":[86],"(building),":[87],"testing,":[88,128],"evaluation":[90],"(deployment":[91],"maintenance).":[93],"SSDLC":[95,163,180,199],"adds":[96],"another":[97],"dimension":[98],"ensuring":[99],"security.":[101],"We":[102],"introduce":[103],"our":[104],"same":[105],"named":[106],"tool":[107,122,137],"\"Secure":[108],"Life-cycle\",":[111],"follows":[113],"general":[115,169],"idea":[116],"goes":[118],"beyond":[119],"it.":[120],"Our":[121],"helps":[123],"to":[124,207],"create":[125],"security,":[126,187],"hardening,":[127],"validation":[130],"reporting":[131],"guidelines":[132],"for":[133,141],"selected":[134],"use-cases.":[135],"environment":[140],"defining":[142],"current":[144],"future":[146,202],"requirements":[148,196],"based":[149],"on":[150],"collection":[152],"standards,":[154],"recommendations,":[155],"best":[156],"practice,":[157],"many":[159],"others.":[160],"Connecting":[161],"with":[164,193,211],"other":[165],"tools":[166],"improves":[167],"level":[170],"automation":[172],"Product":[175],"(PLC).":[178],"gives":[181],"connection":[183],"context":[185],"among":[186],"safety":[188],"performance":[190],"parameters.":[191],"Compared":[192],"static":[194],"definition,":[197],"provides":[200],"simple":[201],"extension":[203],"straight":[205],"integration":[206],"PLC":[209],"non-":[212],"or":[213],"nearly-non":[214],"personal":[215],"(human)":[216],"interaction.":[217]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":9},{"year":2023,"cited_by_count":17},{"year":2022,"cited_by_count":2},{"year":2021,"cited_by_count":4},{"year":2020,"cited_by_count":3}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
