Skip to Main content Skip to Navigation
Journal articles

Reusable knowledge in security requirements engineering: a systematic mapping study

Abstract : Security is a concern that must be taken into consideration starting from the early stages of system development. Over the last two decades, researchers and engineers have developed a considerable number of methods for security requirements engineering. Some of them rely on the (re)use of security knowledge. Despite some existing surveys about security requirements engineering , there is not yet any reference for researchers and practitioners that presents in a systematic way the existing proposals, techniques, and tools related to security knowledge reuse in security requirements engineering. The aim of this paper is to fill this gap by looking into drawing a picture of the literature on knowledge and reuse in security requirements engineering. The questions we address are related to methods, techniques, modeling frameworks, and tools for and by reuse in security requirements engineering. We address these questions through a systematic mapping study. The mapping study was a literature review conducted with the goal of identifying, analyzing, and categorizing state-of-the-art research on our topic. This mapping study analyzes more than thirty approaches, covering 20 years of research in security requirements engineering. The contributions can be summarized as follows: (1) A framework was defined for analyzing and comparing the different proposals as well as categorizing future contributions related to knowledge reuse and security requirements engineering; (2) the different forms of knowledge representation and reuse were identified; and (3) previous surveys were updated. We conclude that most methods should introduce more reusable knowledge to manage security requirements.
Document type :
Journal articles
Complete list of metadata

Cited literature [110 references]  Display  Hide  Download
Contributor : Amina Souag Connect in order to contact the contributor
Submitted on : Tuesday, May 19, 2015 - 3:58:32 PM
Last modification on : Tuesday, January 19, 2021 - 11:08:39 AM
Long-term archiving on: : Thursday, July 2, 2015 - 6:07:30 AM


Reusable knowledge in SRE V15....
Files produced by the author(s)




Amina Souag, Raúl Mazo, Camille Salinesi, Isabelle Comyn-Wattiau. Reusable knowledge in security requirements engineering: a systematic mapping study. Requirements Engineering, Springer Verlag, 2015, pp.1-33. ⟨10.1007/s00766-015-0220-8⟩. ⟨hal-01133226⟩



Les métriques sont temporairement indisponibles