Högskolan i Skövde

his.sePublikasjoner
Endre søk
RefereraExporteraLink to record
Permanent link

Direct link
Referera
Referensformat
  • apa
  • apa-cv
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annet format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annet språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf
Towards Agile Cybersecurity Risk Management for Autonomous Software Engineering Teams
Department of Information and Communication Technology, Swedish Transport Administration, Borlänge, Sweden.ORCID-id: 0000-0001-6327-3565
Information Systems, Luleå University of Technology, Sweden.ORCID-id: 0000-0003-1692-5721
2022 (engelsk)Inngår i: Journal of Cybersecurity and Privacy, E-ISSN 2624-800X, Vol. 2, nr 2, s. 276-291Artikkel i tidsskrift (Fagfellevurdert) Published
Abstract [en]

In this study, a framework was developed, based on a literature review, to help managers incorporate cybersecurity risk management in agile development projects. The literature review used predefined codes that were developed by extending previously defined challenges in the literature—for developing secure software in agile projects—to include aspects of agile cybersecurity risk management. Five steps were identified based on the insights gained from how the reviewed literature has addressed each of the challenges: (1) risk collection; (2) risk refinement; (3) risk mitigation; (4) knowledge transfer; and (5) escalation. To assess the appropriateness of the identified steps, and to determine their inclusion or exclusion in the framework, a survey was submitted to 145 software developers using a four-point Likert scale to measure the attitudes towards each step. The resulting framework presented herein serves as a starting point to help managers and developers structure their agile projects in terms of cybersecurity risk management, supporting less overloaded agile processes, stakeholder insights on relevant risks, and increased security assurance.

sted, utgiver, år, opplag, sider
MDPI, 2022. Vol. 2, nr 2, s. 276-291
Emneord [en]
agile methods, risk management, cybersecurity, agile risk management
HSV kategori
Identifikatorer
URN: urn:nbn:se:his:diva-22958DOI: 10.3390/jcp2020015OAI: oai:DiVA.org:his-22958DiVA, id: diva2:1779649
Merknad

CC BY 4.0

Funding: This research received no external funding.

Tilgjengelig fra: 2023-07-04 Laget: 2023-07-04 Sist oppdatert: 2025-09-29bibliografisk kontrollert

Open Access i DiVA

fulltext(555 kB)232 nedlastinger
Filinformasjon
Fil FULLTEXT01.pdfFilstørrelse 555 kBChecksum SHA-512
e1a5fe221335a96b9dc15450c3b4d413c0ccce323fb6aa5a00d9e8cc46744d495a85025210c105af6bd4c7dcba2116dea57c45b73a3a891ad987025fc454ea62
Type fulltextMimetype application/pdf

Andre lenker

Forlagets fulltekst

Person

Lundgren, Martin

Søk i DiVA

Av forfatter/redaktør
Salin, HannesLundgren, Martin
I samme tidsskrift
Journal of Cybersecurity and Privacy

Søk utenfor DiVA

GoogleGoogle Scholar
Totalt: 232 nedlastinger
Antall nedlastinger er summen av alle nedlastinger av alle fulltekster. Det kan for eksempel være tidligere versjoner som er ikke lenger tilgjengelige

doi
urn-nbn

Altmetric

doi
urn-nbn
Totalt: 258 treff
RefereraExporteraLink to record
Permanent link

Direct link
Referera
Referensformat
  • apa
  • apa-cv
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annet format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annet språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf