dc.contributor.author | Tøndel, Inger Anne | |
dc.contributor.author | Cruzes, Daniela Soares | |
dc.contributor.author | Jaatun, Martin Gilje | |
dc.date.accessioned | 2023-05-09T10:49:55Z | |
dc.date.available | 2023-05-09T10:49:55Z | |
dc.date.created | 2020-05-29T14:47:47Z | |
dc.date.issued | 2020 | |
dc.identifier.citation | EASE '20: Proceedings of the Evaluation and Assessment in Software Engineering. 2020, 360-365. | en_US |
dc.identifier.isbn | 9781450377317 | |
dc.identifier.uri | https://hdl.handle.net/11250/3067254 | |
dc.description.abstract | Today's software development projects need to consider security as one of the qualities the software should possess. However, overspending on security will imply that the software will become more expensive and often also delayed. This paper discusses the role of objectivity in assessing and researching the goal of good enough security. Different understandings of objectivity are introduced, and the paper explores how these can guide the way forward in improving judgements on what level of security is good enough. The paper recommends adopting and improving upon methods that include different perspectives, support the building of interactive expertise, and support confirmability by keeping documentation of the basis on which judgements were made. | en_US |
dc.language.iso | eng | en_US |
dc.publisher | ACM | en_US |
dc.relation.ispartof | EASE '20: Proceedings of the Evaluation and Assessment in Software Engineering | |
dc.title | Achieving "Good Enough" Software Security: The Role of Objectivity | en_US |
dc.type | Chapter | en_US |
dc.description.version | acceptedVersion | en_US |
dc.source.pagenumber | 360-365 | en_US |
dc.identifier.doi | 10.1145/3383219.3383267 | |
dc.identifier.cristin | 1813264 | |
cristin.ispublished | true | |
cristin.fulltext | original | |
cristin.qualitycode | 1 | |