AppSecure.nrw Software Security Study

08/25/2021
by   Stefan Dziwok, et al.
0

In recent years, the World Economic Forum has identified software security as the most significant technological risk to the world's population, as software-intensive systems process critical data and provide critical services. This raises the question of the extent to which German companies are addressing software security in developing and operating their software products. This paper reports on the results of an extensive study among developers, product owners, and managers to answer this question. Our results show that ensuring security is a multi-faceted challenge for companies, involving low awareness, inaccurate self-assessment, and a lack of competence on the topic of secure software development among all stakeholders. The current situation in software development is therefore detrimental to the security of software products in the medium and long term.

READ FULL TEXT

page 19

page 20

page 23

page 24

page 29

page 31

page 34

page 36

research
12/30/2020

Importance of Secure Software Development Processes and Tools for Developers

In this research paper of secure software systems, authors have discusse...
research
12/14/2020

Risk Assessment, Threat Modeling and Security Testing in SDLC

The software development process is considered as one of the key guideli...
research
05/15/2023

DevServOps: DevOps For Product-Oriented Product-Service Systems

For companies developing web-based applications, the Dev and the Ops ref...
research
03/04/2021

Secure Software Development in the Era of Fluid Multi-party Open Software and Services

Pushed by market forces, software development has become fast-paced. As ...
research
08/12/2022

How far are German companies in improving security through static program analysis tools?

As security becomes more relevant for many companies, the popularity of ...
research
07/10/2023

A Novel Approach to Identify Security Controls in Source Code

Secure by Design has become the mainstream development approach ensuring...
research
09/11/2023

Incentive-Based Software Security: Fair Micro-Payments for Writing Secure Code

We describe a mechanism to create fair and explainable incentives for so...

Please sign up or login with your details

Forgot password? Click here to reset