Article (Scientific journals)
An Extensive Systematic Review on the Model-Driven Development of Secure Systems
Nguyen, Phu Hong; Kramer, Max; Klein, Jacques et al.
2015In Information and Software Technology, 68 (December 2015), p. 62-81
Peer reviewed
 

Files


Full Text
An Extensive Systematic Review on the Model-Driven Development of Secure Systems.pdf
Author preprint (2.09 MB)
Download

All documents in ORBilu are protected by a user license.

Send to



Details



Keywords :
security; model-driven; review
Abstract :
[en] Context: Model-Driven Security (MDS) is as a specialised Model-Driven Engineering research area for supporting the development of secure systems. Over a decade of research on MDS has resulted in a large number of publications. Objective: To provide a detailed analysis of the state of the art in MDS, a systematic literature review (SLR) is essential. Method: We conducted an extensive SLR on MDS. Derived from our research questions, we designed a rigorous, extensive search and selection process to identify a set of primary MDS studies that is as complete as possible. Our three-pronged search process consists of automatic searching, manual searching, and snowballing. After discovering and considering more than thousand relevant papers, we identified, strictly selected, and reviewed 108 MDS publications. Results: The results of our SLR show the overall status of the key artefacts of MDS, and the identified primary MDS studies. E.g. regarding security modelling artefact, we found that developing domain-specific languages plays a key role in many MDS approaches. The current limitations in each MDS artefact are pointed out and corresponding potential research directions are suggested. Moreover, we categorise the identified primary MDS studies into 5 significant MDS studies, and other emerging or less common MDS studies. Finally, some trend analyses of MDS research are given. Conclusion: Our results suggest the need for addressing multiple security concerns more systematically and simultaneously, for tool chains supporting the MDS development cycle, and for more empirical studies on the application of MDS methodologies. To the best of our knowledge, this SLR is the first in the field of Software Engineering that combines a snowballing strategy with database searching. This combination has delivered an extensive literature study on MDS.
Research center :
SnT
Disciplines :
Computer science
Author, co-author :
Nguyen, Phu Hong ;  University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
Kramer, Max;  Karlsruhe Institute of Technology
Klein, Jacques ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Le Traon, Yves ;  University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
External co-authors :
yes
Language :
English
Title :
An Extensive Systematic Review on the Model-Driven Development of Secure Systems
Publication date :
September 2015
Journal title :
Information and Software Technology
ISSN :
0950-5849
Publisher :
Elsevier
Volume :
68
Issue :
December 2015
Pages :
62-81
Peer reviewed :
Peer reviewed
FnR Project :
FNR783852 - Modeling, Composing And Testing Of Security Concerns, 2010 (01/05/2011-30/04/2014) - Jacques Klein
Name of the research project :
MITER
Available on ORBilu :
since 17 December 2015

Statistics


Number of views
114 (13 by Unilu)
Number of downloads
160 (4 by Unilu)

Scopus citations®
 
66
Scopus citations®
without self-citations
56
OpenCitations
 
41
WoS citations
 
52

Bibliography


Similar publications



Contact ORBilu