{"id":"https://openalex.org/W2167771807","doi":"https://doi.org/10.1109/re.2011.6051659","title":"Risk and argument: A risk-based argumentation method for practical security","display_name":"Risk and argument: A risk-based argumentation method for practical security","publication_year":2011,"publication_date":"2011-08-01","ids":{"openalex":"https://openalex.org/W2167771807","doi":"https://doi.org/10.1109/re.2011.6051659","mag":"2167771807"},"language":"en","primary_location":{"id":"doi:10.1109/re.2011.6051659","is_oa":false,"landing_page_url":"https://doi.org/10.1109/re.2011.6051659","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2011 IEEE 19th International Requirements Engineering Conference","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"http://hdl.handle.net/10344/1749","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5063050195","display_name":"Virginia N. L. Franqueira","orcid":"https://orcid.org/0000-0003-1332-9115"},"institutions":[{"id":"https://openalex.org/I94624287","display_name":"University of Twente","ror":"https://ror.org/006hf6230","country_code":"NL","type":"education","lineage":["https://openalex.org/I94624287"]}],"countries":["NL"],"is_corresponding":false,"raw_author_name":"Virginia N. L. Franqueira","raw_affiliation_strings":["University of Twente, Enschede, Netherlands"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Twente, Enschede, Netherlands","institution_ids":["https://openalex.org/I94624287"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5031843184","display_name":"Thein Than Tun","orcid":"https://orcid.org/0000-0002-2131-811X"},"institutions":[{"id":"https://openalex.org/I204136569","display_name":"The Open University","ror":"https://ror.org/05mzfcs16","country_code":"GB","type":"education","lineage":["https://openalex.org/I204136569"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Thein Than Tun","raw_affiliation_strings":["Open University, Milton Keynes, UK"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Open University, Milton Keynes, UK","institution_ids":["https://openalex.org/I204136569"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002289161","display_name":"Yijun Yu","orcid":"https://orcid.org/0000-0002-7154-8570"},"institutions":[{"id":"https://openalex.org/I204136569","display_name":"The Open University","ror":"https://ror.org/05mzfcs16","country_code":"GB","type":"education","lineage":["https://openalex.org/I204136569"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Yijun Yu","raw_affiliation_strings":["Open University, Milton Keynes, UK"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Open University, Milton Keynes, UK","institution_ids":["https://openalex.org/I204136569"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5000853046","display_name":"Roel Wieringa","orcid":"https://orcid.org/0000-0003-2121-9928"},"institutions":[{"id":"https://openalex.org/I94624287","display_name":"University of Twente","ror":"https://ror.org/006hf6230","country_code":"NL","type":"education","lineage":["https://openalex.org/I94624287"]}],"countries":["NL"],"is_corresponding":false,"raw_author_name":"Roel Wieringa","raw_affiliation_strings":["University of Twente, Enschede, Netherlands"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Twente, Enschede, Netherlands","institution_ids":["https://openalex.org/I94624287"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5060861082","display_name":"Bashar Nuseibeh","orcid":"https://orcid.org/0000-0002-3476-053X"},"institutions":[{"id":"https://openalex.org/I204136569","display_name":"The Open University","ror":"https://ror.org/05mzfcs16","country_code":"GB","type":"education","lineage":["https://openalex.org/I204136569"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Bashar Nuseibeh","raw_affiliation_strings":["Open University, Milton Keynes, UK"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Open University, Milton Keynes, UK","institution_ids":["https://openalex.org/I204136569"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":17.5752,"has_fulltext":true,"cited_by_count":46,"citation_normalized_percentile":{"value":0.98934948,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"239","last_page":"248"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12423","display_name":"Software Reliability and Analysis Research","score":0.9961000084877014,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/argumentation-theory","display_name":"Argumentation theory","score":0.9181047677993774},{"id":"https://openalex.org/keywords/argument","display_name":"Argument (complex analysis)","score":0.748934268951416},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6715185046195984},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5784279108047485},{"id":"https://openalex.org/keywords/argumentation-framework","display_name":"Argumentation framework","score":0.5661031007766724},{"id":"https://openalex.org/keywords/work","display_name":"Work (physics)","score":0.5545625686645508},{"id":"https://openalex.org/keywords/computer-security-model","display_name":"Computer security model","score":0.430439829826355},{"id":"https://openalex.org/keywords/risk-assessment","display_name":"Risk assessment","score":0.4294167757034302},{"id":"https://openalex.org/keywords/risk-analysis","display_name":"Risk analysis (engineering)","score":0.42342543601989746},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.15610462427139282},{"id":"https://openalex.org/keywords/epistemology","display_name":"Epistemology","score":0.13421288132667542},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.11820802092552185}],"concepts":[{"id":"https://openalex.org/C65059942","wikidata":"https://www.wikidata.org/wiki/Q270105","display_name":"Argumentation theory","level":2,"score":0.9181047677993774},{"id":"https://openalex.org/C98184364","wikidata":"https://www.wikidata.org/wiki/Q1780131","display_name":"Argument (complex analysis)","level":2,"score":0.748934268951416},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6715185046195984},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5784279108047485},{"id":"https://openalex.org/C2779607372","wikidata":"https://www.wikidata.org/wiki/Q4789757","display_name":"Argumentation framework","level":3,"score":0.5661031007766724},{"id":"https://openalex.org/C18762648","wikidata":"https://www.wikidata.org/wiki/Q42213","display_name":"Work (physics)","level":2,"score":0.5545625686645508},{"id":"https://openalex.org/C121822524","wikidata":"https://www.wikidata.org/wiki/Q5157582","display_name":"Computer security model","level":2,"score":0.430439829826355},{"id":"https://openalex.org/C12174686","wikidata":"https://www.wikidata.org/wiki/Q1058438","display_name":"Risk assessment","level":2,"score":0.4294167757034302},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.42342543601989746},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.15610462427139282},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.13421288132667542},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.11820802092552185},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C78519656","wikidata":"https://www.wikidata.org/wiki/Q101333","display_name":"Mechanical engineering","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":5,"locations":[{"id":"doi:10.1109/re.2011.6051659","is_oa":false,"landing_page_url":"https://doi.org/10.1109/re.2011.6051659","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2011 IEEE 19th International Requirements Engineering Conference","raw_type":"proceedings-article"},{"id":"pmh:oai:ris.utwente.nl:openaire_cris_publications/bd7d0236-7b6b-4099-bde5-78bdfa744f90","is_oa":false,"landing_page_url":"https://research.utwente.nl/en/publications/bd7d0236-7b6b-4099-bde5-78bdfa744f90","pdf_url":null,"source":{"id":"https://openalex.org/S4406922991","display_name":"University of Twente Research Information","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Nunes Leal Franqueira, V, Tun, T T, Yu, Y, Wieringa, R J & Nuseibeh, B 2011, Risk and Argument: A Risk-based Argumentation Method for Practical Security. in Proceedings of the 19th IEEE International Requirements Engineering Conference. IEEE, USA, pp. 239-248, 19th IEEE International Requirements Engineering Conference, RE 2011, Trento, Italy, 29/08/11. https://doi.org/10.1109/RE.2011.6051659","raw_type":"info:eu-repo/semantics/publishedVersion"},{"id":"pmh:oai:clok.uclan.ac.uk:6076","is_oa":false,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4306402361","display_name":"CLOK (University of Central Lancashire)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I185852735","host_organization_name":"University of Lancashire","host_organization_lineage":["https://openalex.org/I185852735"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"acceptedVersion","is_accepted":true,"is_published":false,"raw_source_name":"","raw_type":"Book Section"},{"id":"pmh:oai:kar.kent.ac.uk:77195","is_oa":false,"landing_page_url":"https://kar.kent.ac.uk/77195/1/6051659","pdf_url":null,"source":{"id":"https://openalex.org/S4377196264","display_name":"Kent Academic Repository (University of Kent)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I20581793","host_organization_name":"University of Kent","host_organization_lineage":["https://openalex.org/I20581793"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"acceptedVersion","is_accepted":true,"is_published":false,"raw_source_name":null,"raw_type":"PeerReviewed"},{"id":"pmh:http://www.rian.ie/51767/","is_oa":true,"landing_page_url":"http://hdl.handle.net/10344/1749","pdf_url":"http://hdl.handle.net/10344/1749","source":{"id":"https://openalex.org/S4306400033","display_name":"Arrow@dit (Dublin Institute of Technology)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I115570527","host_organization_name":"Dublin Institute of Technology","host_organization_lineage":["https://openalex.org/I115570527"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"19TH IEEE International Requirements Engineering Conference (RE'11);08/2011","raw_type":"Conference item"}],"best_oa_location":{"id":"pmh:http://www.rian.ie/51767/","is_oa":true,"landing_page_url":"http://hdl.handle.net/10344/1749","pdf_url":"http://hdl.handle.net/10344/1749","source":{"id":"https://openalex.org/S4306400033","display_name":"Arrow@dit (Dublin Institute of Technology)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I115570527","host_organization_name":"Dublin Institute of Technology","host_organization_lineage":["https://openalex.org/I115570527"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"19TH IEEE International Requirements Engineering Conference (RE'11);08/2011","raw_type":"Conference item"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.75}],"awards":[{"id":"https://openalex.org/G8470010600","display_name":null,"funder_award_id":"03/CE2/I303 1","funder_id":"https://openalex.org/F4320320847","funder_display_name":"Science Foundation Ireland"}],"funders":[{"id":"https://openalex.org/F4320320847","display_name":"Science Foundation Ireland","ror":"https://ror.org/0271asj38"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2167771807.pdf","grobid_xml":"https://content.openalex.org/works/W2167771807.grobid-xml"},"referenced_works_count":43,"referenced_works":["https://openalex.org/W29888434","https://openalex.org/W101322487","https://openalex.org/W1547404119","https://openalex.org/W1551592336","https://openalex.org/W1558751900","https://openalex.org/W1567269515","https://openalex.org/W1922979104","https://openalex.org/W1983411204","https://openalex.org/W2009578745","https://openalex.org/W2078899285","https://openalex.org/W2097154968","https://openalex.org/W2100230008","https://openalex.org/W2109429473","https://openalex.org/W2112086934","https://openalex.org/W2113237548","https://openalex.org/W2115778973","https://openalex.org/W2129213188","https://openalex.org/W2131730994","https://openalex.org/W2148637904","https://openalex.org/W2149715000","https://openalex.org/W2150071393","https://openalex.org/W2153259910","https://openalex.org/W2164597722","https://openalex.org/W2164900099","https://openalex.org/W2345152462","https://openalex.org/W2395947715","https://openalex.org/W2782781282","https://openalex.org/W3118517595","https://openalex.org/W3161918289","https://openalex.org/W4229680087","https://openalex.org/W4251110838","https://openalex.org/W4285719527","https://openalex.org/W6601194080","https://openalex.org/W6632688380","https://openalex.org/W6640129242","https://openalex.org/W6675372293","https://openalex.org/W6676599654","https://openalex.org/W6679040154","https://openalex.org/W6704807101","https://openalex.org/W6712476366","https://openalex.org/W6788651489","https://openalex.org/W6925715943","https://openalex.org/W6995947862"],"related_works":["https://openalex.org/W2511305084","https://openalex.org/W2046435924","https://openalex.org/W2077815492","https://openalex.org/W3123591583","https://openalex.org/W2162270815","https://openalex.org/W3125673773","https://openalex.org/W3097817567","https://openalex.org/W3200619217","https://openalex.org/W3036391810","https://openalex.org/W4255801263"],"abstract_inverted_index":{"When":[0],"showing":[1],"that":[2],"a":[3,119],"software":[4],"system":[5,23],"meets":[6],"certain":[7],"security":[8,93,104,112],"requirements,":[9],"it":[10],"is":[11],"often":[12],"necessary":[13],"to":[14,57,95,101],"work":[15],"with":[16,43,64,77,118],"formal":[17],"and":[18,26,49,52,100,109],"informal":[19],"descriptions":[20],"of":[21,67,73,92,122],"the":[22,71,97,103],"behavior,":[24],"vulnerabilities,":[25],"threats":[27],"from":[28],"potential":[29],"attackers.":[30],"In":[31],"earlier":[32],"work,":[33],"Haley":[34,74],"et":[35,75],"al.":[36,76],"[1]":[37],"showed":[38],"structured":[39],"argumentation":[40,105],"could":[41],"deal":[42,63],"such":[44],"mixed":[45],"descriptions.":[46],"However,":[47],"incomplete":[48],"uncertain":[50],"information,":[51],"limited":[53],"resources":[54],"force":[55],"practitioners":[56],"settle":[58],"for":[59,111],"good-enough":[60],"security.":[61],"To":[62],"these":[65],"conditions":[66],"practice,":[68],"we":[69],"extend":[70],"method":[72],"risk":[78,98],"assessment.":[79],"The":[80],"proposed":[81],"method,":[82],"RISA":[83,117],"(RIsk":[84],"assessment":[85],"in":[86,106],"Security":[87],"Argumentation),":[88],"uses":[89],"public":[90],"catalogs":[91],"expertise":[94],"support":[96],"assessment,":[99],"guide":[102],"identifying":[107],"rebuttals":[108],"mitigations":[110],"requirements":[113],"satisfaction.":[114],"We":[115],"illustrate":[116],"realistic":[120],"example":[121],"PIN":[123],"Entry":[124],"Device.":[125]},"counts_by_year":[{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":2},{"year":2020,"cited_by_count":3},{"year":2019,"cited_by_count":2},{"year":2018,"cited_by_count":2},{"year":2017,"cited_by_count":3},{"year":2016,"cited_by_count":3},{"year":2015,"cited_by_count":7},{"year":2014,"cited_by_count":11},{"year":2013,"cited_by_count":7},{"year":2012,"cited_by_count":4}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2016-06-24T00:00:00"}
