Utilize este identificador para referenciar este registo: http://hdl.handle.net/10071/29455
Registo completo
Campo DCValorIdioma
dc.contributor.authorIosif, A.-C.-
dc.contributor.authorGasiba, T. E.-
dc.contributor.authorLechner, U.-
dc.contributor.authorPinto-Albuquerque, M.-
dc.contributor.editorFalk, R., and Chan, S.-
dc.date.accessioned2023-10-18T11:11:34Z-
dc.date.available2023-10-18T11:11:34Z-
dc.date.issued2023-
dc.identifier.citationIosif, A.-C., Gasiba, T. E., Lechner, U., & Pinto-Albuquerque, M. (2023). Raising awareness in the industry on secure code review practices. In R. Falk, & S. Chan (Eds.), CYBER 2023: The Eighth International Conference on Cyber-Technologies and Cyber-Systems (pp. 62-68). IARIA. https://www.thinkmind.org/index.php?view=instance&instance=CYBER+2023-
dc.identifier.isbn978-1-68558-113-8-
dc.identifier.issn2519-8599-
dc.identifier.urihttp://hdl.handle.net/10071/29455-
dc.description.abstractAs products and services become increasingly digital and software increasingly complex, all aspects of an industrial software development lifecycle must contribute to quality. Code review serves as a means to address software quality and fosters knowledge exchange across teams. Nonetheless, code review practices require resources and often require more resources than planned, while the benefit of a code review to code quality is less tangible. In our work, we address the effectiveness and efficiency of code review practices and develop an understanding of what is a good and valuable code review practice as part of a software development lifecycle. Our focus is code reviews meant to identify and address security weaknesses in an industrial context. This work presents a design study on how to design a workshop on code review. We conducted and evaluated three workshops with 37 industrial software developers. The findings of our work reveal that presenting constructive code review practices can contribute to raising awareness of secure coding and software lifecycle practices among software development professionals. This contributes to the quality and, in particular, security of software.eng
dc.language.isoeng-
dc.publisherIARIA-
dc.relationinfo:eu-repo/grantAgreement/FCT/6817 - DCRRNI ID/UIDB%2F04466%2F2020/PT-
dc.relation13N16585-
dc.relation13N16581-
dc.relationinfo:eu-repo/grantAgreement/FCT/6817 - DCRRNI ID/UIDP%2F04466%2F2020/PT-
dc.relation.ispartofCYBER 2023: The Eighth International Conference on Cyber-Technologies and Cyber-Systems-
dc.rightsopenAccess-
dc.subjectCode revieweng
dc.subjectCybersecurityeng
dc.subjectComplianceeng
dc.subjectDevelopment lifecycleeng
dc.subjectQualityeng
dc.subjectStandardseng
dc.titleRaising awareness in the industry on secure code review practiceseng
dc.typeconferenceObject-
dc.event.titleCYBER 2023: The Eighth International Conference on Cyber-Technologies and Cyber-Systems-
dc.event.typeConferênciapt
dc.event.locationPorto, Portugaleng
dc.event.date2023-
dc.pagination62 - 68-
dc.peerreviewedyes-
dc.date.updated2023-10-18T12:10:18Z-
dc.description.versioninfo:eu-repo/semantics/publishedVersion-
iscte.identifier.cienciahttps://ciencia.iscte-iul.pt/id/ci-pub-98269-
Aparece nas coleções:ISTAR-CRI - Comunicações a conferências internacionais

Ficheiros deste registo:
Ficheiro TamanhoFormato 
conferenceobject_98269.pdf162,19 kBAdobe PDFVer/Abrir


FacebookTwitterDeliciousLinkedInDiggGoogle BookmarksMySpaceOrkut
Formato BibTex mendeley Endnote Logotipo do DeGóis Logotipo do Orcid 

Todos os registos no repositório estão protegidos por leis de copyright, com todos os direitos reservados.