{"id":"https://openalex.org/W2900602878","doi":"https://doi.org/10.1109/secdev.2018.00019","title":"Light-Touch Interventions to Improve Software Development Security","display_name":"Light-Touch Interventions to Improve Software Development Security","publication_year":2018,"publication_date":"2018-09-01","ids":{"openalex":"https://openalex.org/W2900602878","doi":"https://doi.org/10.1109/secdev.2018.00019","mag":"2900602878"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/secdev.2018.00019","pdf_url":null,"source":null,"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"proceedings-article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://eprints.lancs.ac.uk/id/eprint/129066/1/WeirSecDev2018.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5087444510","display_name":"Charles Weir","orcid":"https://orcid.org/0000-0003-3051-4195"},"institutions":[{"id":"https://openalex.org/I67415387","display_name":"Lancaster University","ror":"https://ror.org/04f2nsd36","country_code":"GB","type":"funder","lineage":["https://openalex.org/I67415387"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Charles Weir","raw_affiliation_strings":["Security Lancaster, Lancaster University, United Kingdom"],"affiliations":[{"raw_affiliation_string":"Security Lancaster, Lancaster University, United Kingdom","institution_ids":["https://openalex.org/I67415387"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5017804379","display_name":"Lynne Blair","orcid":"https://orcid.org/0000-0002-7515-8908"},"institutions":[{"id":"https://openalex.org/I67415387","display_name":"Lancaster University","ror":"https://ror.org/04f2nsd36","country_code":"GB","type":"funder","lineage":["https://openalex.org/I67415387"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Lynne Blair","raw_affiliation_strings":["Security Lancaster, Lancaster University, United Kingdom"],"affiliations":[{"raw_affiliation_string":"Security Lancaster, Lancaster University, United Kingdom","institution_ids":["https://openalex.org/I67415387"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036272832","display_name":"Ingolf Becker","orcid":"https://orcid.org/0000-0002-3963-4743"},"institutions":[{"id":"https://openalex.org/I45129253","display_name":"University College London","ror":"https://ror.org/02jx3x895","country_code":"GB","type":"funder","lineage":["https://openalex.org/I124357947","https://openalex.org/I45129253"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Ingolf Becker","raw_affiliation_strings":["Department of Computer Science, University College, London, United Kingdom"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University College, London, United Kingdom","institution_ids":["https://openalex.org/I45129253"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5072934169","display_name":"Angela Sasse","orcid":null},"institutions":[{"id":"https://openalex.org/I45129253","display_name":"University College London","ror":"https://ror.org/02jx3x895","country_code":"GB","type":"funder","lineage":["https://openalex.org/I124357947","https://openalex.org/I45129253"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Angela Sasse","raw_affiliation_strings":["Department of Computer Science, University College, London, United Kingdom"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, University College, London, United Kingdom","institution_ids":["https://openalex.org/I45129253"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5078368556","display_name":"James Noble","orcid":"https://orcid.org/0000-0001-9036-5692"},"institutions":[{"id":"https://openalex.org/I41156924","display_name":"Victoria University of Wellington","ror":"https://ror.org/0040r6f76","country_code":"NZ","type":"funder","lineage":["https://openalex.org/I41156924"]}],"countries":["NZ"],"is_corresponding":false,"raw_author_name":"James Noble","raw_affiliation_strings":["Engineering and Computer Science, Victoria University of Wellington, New Zealand"],"affiliations":[{"raw_affiliation_string":"Engineering and Computer Science, Victoria University of Wellington, New Zealand","institution_ids":["https://openalex.org/I41156924"]}]}],"institution_assertions":[],"countries_distinct_count":2,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":2.639,"has_fulltext":true,"fulltext_origin":"ngrams","cited_by_count":9,"citation_normalized_percentile":{"value":0.878711,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":84,"max":85},"biblio":{"volume":null,"issue":null,"first_page":"85","last_page":"93"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9979,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9979,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10430","display_name":"Software Engineering Techniques and Practices","score":0.9971,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10639","display_name":"Advanced Software Engineering Methodologies","score":0.9813,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/facilitator","display_name":"Facilitator","score":0.7478811}],"concepts":[{"id":"https://openalex.org/C2776831358","wikidata":"https://www.wikidata.org/wiki/Q1150166","display_name":"Facilitator","level":2,"score":0.7478811},{"id":"https://openalex.org/C529173508","wikidata":"https://www.wikidata.org/wiki/Q638608","display_name":"Software development","level":3,"score":0.56025827},{"id":"https://openalex.org/C62913178","wikidata":"https://www.wikidata.org/wiki/Q7554361","display_name":"Software security assurance","level":4,"score":0.56025404},{"id":"https://openalex.org/C27415008","wikidata":"https://www.wikidata.org/wiki/Q7256382","display_name":"Psychological intervention","level":2,"score":0.5568084},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5363765},{"id":"https://openalex.org/C164624739","wikidata":"https://www.wikidata.org/wiki/Q754331","display_name":"Activity-based costing","level":2,"score":0.43991607},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.41987327},{"id":"https://openalex.org/C195094911","wikidata":"https://www.wikidata.org/wiki/Q14167904","display_name":"Process management","level":1,"score":0.39523607},{"id":"https://openalex.org/C115903868","wikidata":"https://www.wikidata.org/wiki/Q80993","display_name":"Software engineering","level":1,"score":0.3730261},{"id":"https://openalex.org/C56739046","wikidata":"https://www.wikidata.org/wiki/Q192060","display_name":"Knowledge management","level":1,"score":0.37035614},{"id":"https://openalex.org/C110354214","wikidata":"https://www.wikidata.org/wiki/Q6314146","display_name":"Engineering management","level":1,"score":0.36569646},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.28835008},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.22893351},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.17711428},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.16896942},{"id":"https://openalex.org/C527648132","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information security","level":2,"score":0.15012577},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.10533756},{"id":"https://openalex.org/C77805123","wikidata":"https://www.wikidata.org/wiki/Q161272","display_name":"Social psychology","level":1,"score":0.0},{"id":"https://openalex.org/C162853370","wikidata":"https://www.wikidata.org/wiki/Q39809","display_name":"Marketing","level":1,"score":0.0},{"id":"https://openalex.org/C118552586","wikidata":"https://www.wikidata.org/wiki/Q7867","display_name":"Psychiatry","level":1,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0}],"mesh":[],"locations_count":4,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/secdev.2018.00019","pdf_url":null,"source":null,"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},{"is_oa":true,"landing_page_url":"https://eprints.lancs.ac.uk/id/eprint/129066/1/WeirSecDev2018.pdf","pdf_url":"https://eprints.lancs.ac.uk/id/eprint/129066/1/WeirSecDev2018.pdf","source":{"id":"https://openalex.org/S4306401916","display_name":"Lancaster EPrints (Lancaster University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I67415387","host_organization_name":"Lancaster University","host_organization_lineage":["https://openalex.org/I67415387"],"host_organization_lineage_names":["Lancaster University"],"type":"repository"},"license":null,"license_id":null,"version":"acceptedVersion","is_accepted":true,"is_published":false},{"is_oa":true,"landing_page_url":"https://discovery.ucl.ac.uk/id/eprint/10057557/","pdf_url":"https://discovery.ucl.ac.uk/10057557/1/WeirSecDev2018.pdf","source":{"id":"https://openalex.org/S4306400024","display_name":"UCL Discovery (University College London)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I45129253","host_organization_name":"University College London","host_organization_lineage":["https://openalex.org/I45129253"],"host_organization_lineage_names":["University College London"],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false},{"is_oa":true,"landing_page_url":"https://discovery.ucl.ac.uk/id/eprint/10057557/1/WeirSecDev2018.pdf","pdf_url":"https://discovery.ucl.ac.uk/id/eprint/10057557/1/WeirSecDev2018.pdf","source":{"id":"https://openalex.org/S4306400024","display_name":"UCL Discovery (University College London)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I45129253","host_organization_name":"University College London","host_organization_lineage":["https://openalex.org/I45129253"],"host_organization_lineage_names":["University College London"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false}],"best_oa_location":{"is_oa":true,"landing_page_url":"https://eprints.lancs.ac.uk/id/eprint/129066/1/WeirSecDev2018.pdf","pdf_url":"https://eprints.lancs.ac.uk/id/eprint/129066/1/WeirSecDev2018.pdf","source":{"id":"https://openalex.org/S4306401916","display_name":"Lancaster EPrints (Lancaster University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I67415387","host_organization_name":"Lancaster University","host_organization_lineage":["https://openalex.org/I67415387"],"host_organization_lineage_names":["Lancaster University"],"type":"repository"},"license":null,"license_id":null,"version":"acceptedVersion","is_accepted":true,"is_published":false},"sustainable_development_goals":[],"grants":[],"datasets":[],"versions":[],"referenced_works_count":34,"referenced_works":["https://openalex.org/W109841683","https://openalex.org/W1514888816","https://openalex.org/W1674092947","https://openalex.org/W1765266268","https://openalex.org/W1973601758","https://openalex.org/W1985408088","https://openalex.org/W1990513740","https://openalex.org/W2001822577","https://openalex.org/W2008626182","https://openalex.org/W2008681738","https://openalex.org/W2057366964","https://openalex.org/W2059149317","https://openalex.org/W2060190987","https://openalex.org/W2072601349","https://openalex.org/W2078393527","https://openalex.org/W2107213026","https://openalex.org/W2325370405","https://openalex.org/W2403278646","https://openalex.org/W2498706142","https://openalex.org/W2511044583","https://openalex.org/W2546949415","https://openalex.org/W2577413333","https://openalex.org/W2588952840","https://openalex.org/W2592645022","https://openalex.org/W2609778766","https://openalex.org/W2613085408","https://openalex.org/W2694523729","https://openalex.org/W2766217896","https://openalex.org/W4233410239","https://openalex.org/W4240963959","https://openalex.org/W4242704521","https://openalex.org/W4302078553","https://openalex.org/W572872720","https://openalex.org/W654714214"],"related_works":["https://openalex.org/W945978269","https://openalex.org/W561146171","https://openalex.org/W4225160120","https://openalex.org/W4200095465","https://openalex.org/W3157838713","https://openalex.org/W2982596590","https://openalex.org/W2748952813","https://openalex.org/W2251957170","https://openalex.org/W2243039620","https://openalex.org/W2036724481"],"abstract_inverted_index":{"Many":[0],"software":[1,8,50],"developers":[2],"still":[3],"have":[4],"little":[5],"interest":[6],"in":[7],"security.":[9,51],"To":[10],"change":[11],"this,":[12],"we":[13],"need":[14],"'interventions'":[15],"to":[16,19,81],"development":[17,85],"teams":[18],"motivate":[20],"and":[21,65],"help":[22,82],"them":[23],"towards":[24],"security":[25],"improvement.":[26],"An":[27],"intervention":[28],"costing":[29],"less":[30],"than":[31],"two":[32],"days'":[33],"effort":[34,44],"from":[35],"a":[36,40],"facilitator":[37],"plus":[38],"half":[39],"day":[41],"of":[42],"team":[43],"can":[45],"significantly":[46],"improve":[47],"that":[48],"team's":[49],"This":[52],"case":[53],"study":[54],"describes":[55],"how":[56],"this":[57],"approach":[58,77],"was":[59],"used":[60],"with":[61],"one":[62],"commercial":[63],"team,":[64],"identifies":[66],"its":[67],"impact":[68],"using":[69],"Participative":[70],"Action":[71],"Research.":[72],"With":[73],"suitable":[74],"improvements,":[75],"the":[76,79],"has":[78],"potential":[80],"many":[83],"other":[84],"teams.":[86]},"abstract_inverted_index_v3":null,"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W2900602878","counts_by_year":[{"year":2023,"cited_by_count":3},{"year":2021,"cited_by_count":2},{"year":2020,"cited_by_count":3},{"year":2019,"cited_by_count":1}],"updated_date":"2025-04-18T02:04:02.346552","created_date":"2018-11-29"}