{"id":"https://openalex.org/W2796998396","doi":"https://doi.org/10.1145/3190619.3190634","title":"Challenges and approaches of performing canonical action research in software security","display_name":"Challenges and approaches of performing canonical action research in software security","publication_year":2018,"publication_date":"2018-04-10","ids":{"openalex":"https://openalex.org/W2796998396","doi":"https://doi.org/10.1145/3190619.3190634","mag":"2796998396"},"language":"en","primary_location":{"id":"doi:10.1145/3190619.3190634","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3190619.3190634","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 5th Annual Symposium and Bootcamp on Hot Topics in the Science of Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5020122062","display_name":"Daniela S. Cruzes","orcid":"https://orcid.org/0000-0002-2490-902X"},"institutions":[{"id":"https://openalex.org/I173888879","display_name":"SINTEF","ror":"https://ror.org/01f677e56","country_code":"NO","type":"facility","lineage":["https://openalex.org/I173888879"]},{"id":"https://openalex.org/I4387930215","display_name":"SINTEF Digital","ror":"https://ror.org/028m52w57","country_code":null,"type":"facility","lineage":["https://openalex.org/I173888879","https://openalex.org/I4387930215"]}],"countries":["NO"],"is_corresponding":true,"raw_author_name":"Daniela S. Cruzes","raw_affiliation_strings":["SINTEF Digital, Trondheim, Norway"],"affiliations":[{"raw_affiliation_string":"SINTEF Digital, Trondheim, Norway","institution_ids":["https://openalex.org/I173888879","https://openalex.org/I4387930215"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5071836226","display_name":"Martin Gilje Jaatun","orcid":"https://orcid.org/0000-0001-7127-6694"},"institutions":[{"id":"https://openalex.org/I4387930215","display_name":"SINTEF Digital","ror":"https://ror.org/028m52w57","country_code":null,"type":"facility","lineage":["https://openalex.org/I173888879","https://openalex.org/I4387930215"]},{"id":"https://openalex.org/I173888879","display_name":"SINTEF","ror":"https://ror.org/01f677e56","country_code":"NO","type":"facility","lineage":["https://openalex.org/I173888879"]}],"countries":["NO"],"is_corresponding":false,"raw_author_name":"Martin G. Jaatun","raw_affiliation_strings":["SINTEF Digital, Trondheim, Norway"],"affiliations":[{"raw_affiliation_string":"SINTEF Digital, Trondheim, Norway","institution_ids":["https://openalex.org/I173888879","https://openalex.org/I4387930215"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5035551939","display_name":"Tosin Daniel Oyetoyan","orcid":"https://orcid.org/0000-0003-0027-4522"},"institutions":[{"id":"https://openalex.org/I173888879","display_name":"SINTEF","ror":"https://ror.org/01f677e56","country_code":"NO","type":"facility","lineage":["https://openalex.org/I173888879"]},{"id":"https://openalex.org/I4387930215","display_name":"SINTEF Digital","ror":"https://ror.org/028m52w57","country_code":null,"type":"facility","lineage":["https://openalex.org/I173888879","https://openalex.org/I4387930215"]}],"countries":["NO"],"is_corresponding":false,"raw_author_name":"Tosin D. Oyetoyan","raw_affiliation_strings":["SINTEF Digital, Trondheim, Norway"],"affiliations":[{"raw_affiliation_string":"SINTEF Digital, Trondheim, Norway","institution_ids":["https://openalex.org/I173888879","https://openalex.org/I4387930215"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5020122062"],"corresponding_institution_ids":["https://openalex.org/I173888879","https://openalex.org/I4387930215"],"apc_list":null,"apc_paid":null,"fwci":2.7488,"has_fulltext":false,"cited_by_count":7,"citation_normalized_percentile":{"value":0.92287503,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"11"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9937000274658203,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9937000274658203,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9916999936103821,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11891","display_name":"Big Data and Business Intelligence","score":0.9916999936103821,"subfield":{"id":"https://openalex.org/subfields/1404","display_name":"Management Information Systems"},"field":{"id":"https://openalex.org/fields/14","display_name":"Business, Management and Accounting"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.658231258392334},{"id":"https://openalex.org/keywords/action","display_name":"Action (physics)","score":0.623818039894104},{"id":"https://openalex.org/keywords/action-research","display_name":"Action research","score":0.6234236359596252},{"id":"https://openalex.org/keywords/work","display_name":"Work (physics)","score":0.6071387529373169},{"id":"https://openalex.org/keywords/context","display_name":"Context (archaeology)","score":0.5796093344688416},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.5085841417312622},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.5003857612609863},{"id":"https://openalex.org/keywords/knowledge-management","display_name":"Knowledge management","score":0.48072317242622375},{"id":"https://openalex.org/keywords/management-science","display_name":"Management science","score":0.38786014914512634},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.1705377995967865},{"id":"https://openalex.org/keywords/sociology","display_name":"Sociology","score":0.122304767370224}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.658231258392334},{"id":"https://openalex.org/C2780791683","wikidata":"https://www.wikidata.org/wiki/Q846785","display_name":"Action (physics)","level":2,"score":0.623818039894104},{"id":"https://openalex.org/C53173841","wikidata":"https://www.wikidata.org/wiki/Q1897444","display_name":"Action research","level":2,"score":0.6234236359596252},{"id":"https://openalex.org/C18762648","wikidata":"https://www.wikidata.org/wiki/Q42213","display_name":"Work (physics)","level":2,"score":0.6071387529373169},{"id":"https://openalex.org/C2779343474","wikidata":"https://www.wikidata.org/wiki/Q3109175","display_name":"Context (archaeology)","level":2,"score":0.5796093344688416},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.5085841417312622},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.5003857612609863},{"id":"https://openalex.org/C56739046","wikidata":"https://www.wikidata.org/wiki/Q192060","display_name":"Knowledge management","level":1,"score":0.48072317242622375},{"id":"https://openalex.org/C539667460","wikidata":"https://www.wikidata.org/wiki/Q2414942","display_name":"Management science","level":1,"score":0.38786014914512634},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.1705377995967865},{"id":"https://openalex.org/C144024400","wikidata":"https://www.wikidata.org/wiki/Q21201","display_name":"Sociology","level":0,"score":0.122304767370224},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C19417346","wikidata":"https://www.wikidata.org/wiki/Q7922","display_name":"Pedagogy","level":1,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C78519656","wikidata":"https://www.wikidata.org/wiki/Q101333","display_name":"Mechanical engineering","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3190619.3190634","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3190619.3190634","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 5th Annual Symposium and Bootcamp on Hot Topics in the Science of Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Partnerships for the goals","score":0.46000000834465027,"id":"https://metadata.un.org/sdg/17"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":31,"referenced_works":["https://openalex.org/W643519619","https://openalex.org/W1542932561","https://openalex.org/W1607930791","https://openalex.org/W1816827037","https://openalex.org/W1989355989","https://openalex.org/W2029751781","https://openalex.org/W2036498929","https://openalex.org/W2073752082","https://openalex.org/W2075647120","https://openalex.org/W2081844467","https://openalex.org/W2087397893","https://openalex.org/W2118709876","https://openalex.org/W2119748171","https://openalex.org/W2122626138","https://openalex.org/W2142796655","https://openalex.org/W2157635292","https://openalex.org/W2520915449","https://openalex.org/W2547517077","https://openalex.org/W2563098966","https://openalex.org/W2594007209","https://openalex.org/W2606791856","https://openalex.org/W2744284456","https://openalex.org/W2795739471","https://openalex.org/W2804267743","https://openalex.org/W2809528855","https://openalex.org/W2951975619","https://openalex.org/W3019588301","https://openalex.org/W3126018461","https://openalex.org/W4237826058","https://openalex.org/W4285719527","https://openalex.org/W4320009379"],"related_works":["https://openalex.org/W2061995240","https://openalex.org/W2084487854","https://openalex.org/W2353878298","https://openalex.org/W2077682749","https://openalex.org/W2298450300","https://openalex.org/W2374729771","https://openalex.org/W3200334421","https://openalex.org/W1966382526","https://openalex.org/W2921131427","https://openalex.org/W3112381850"],"abstract_inverted_index":{"When":[0],"studying":[1],"work":[2,15,112],"practices,":[3],"it":[4],"is":[5,16,21],"important":[6],"to":[7,42],"obtain":[8],"accurate":[9],"and":[10,51,104,110],"reliable":[11],"information":[12],"about":[13,49],"how":[14],"actually":[17],"done.":[18],"Action":[19],"research":[20,41,55,62,84,119],"an":[22],"interactive":[23],"inquiry":[24],"process":[25],"that":[26],"balances":[27],"problem":[28],"solving":[29],"actions":[30],"implemented":[31],"in":[32,60,63,66,80,85,120],"a":[33],"collaborative":[34,38],"context":[35],"with":[36],"data-driven":[37],"analysis":[39],"or":[40],"understand":[43],"underlying":[44],"causes":[45],"enabling":[46],"future":[47,111],"predictions":[48],"personal":[50],"organizational":[52],"change.":[53],"Our":[54],"team":[56],"has":[57],"been":[58],"engaged":[59],"action":[61,83,102,118],"software":[64,86,121],"organizations":[65],"Norway":[67],"for":[68],"two":[69],"years.":[70],"In":[71],"this":[72],"paper":[73],"we":[74,105],"describe":[75],"some":[76,107],"of":[77,93,100,117],"the":[78,91,94,98,115],"challenges":[79,95],"performing":[81],"canonical":[82,101],"security.":[87],"We":[88],"have":[89],"structured":[90],"discussion":[92],"based":[96],"on":[97],"principles":[99],"research,":[103],"draw":[106],"lessons":[108],"learned":[109],"towards":[113],"improving":[114],"adoption":[116],"security":[122],"research.":[123]},"counts_by_year":[{"year":2021,"cited_by_count":2},{"year":2020,"cited_by_count":3},{"year":2019,"cited_by_count":1},{"year":2018,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
