Utilize este identificador para referenciar este registo: http://hdl.handle.net/10071/35762
Registo completo
Campo DCValorIdioma
dc.contributor.authorIosif, A.-
dc.contributor.authorLechner, U.-
dc.contributor.authorPinto-Albuquerque, M.-
dc.contributor.authorGasiba, T.-
dc.contributor.editorA. Bollin-
dc.contributor.editorI. Bosnic-
dc.contributor.editorJ. Brings-
dc.contributor.editorM. Daun-
dc.contributor.editorM. Manjunath-
dc.date.accessioned2025-12-17T09:57:14Z-
dc.date.issued2024-
dc.identifier.citationIosif, A., Lechner, U., Pinto-Albuquerque, M., & Gasiba, T. (2024). Serious game for industrial cybersecurity: Experiential learning through code review. In A. Bollin, I. Bosnic, J. Brings, M. Daun, & M. Manjunath (Eds.), Software Engineering Education Conference, Proceedings. IEEE. https://doi.org/10.1109/CSEET62301.2024.10663058-
dc.identifier.isbn979-8-3503-7897-9-
dc.identifier.issn1093-0175-
dc.identifier.urihttp://hdl.handle.net/10071/35762-
dc.description.abstractEvery stage of the industrial software development process is crucial for ensuring high-quality results in a time of increasing digitalization and complexity. Code review is a method to enhance software quality and also promote knowledge exchange among teams. It is generally accepted that the earlier that software bugs and vulnerabilities are caught during product development, the more costs can be saved. As such, code review can play an important role in industrial software development. However, industry experience showcases that code review can be resource-intensive, and the direct impact on code quality can be hard to quantify. Related work shows that practitioners performing code reviews do not focus specifically on security, partly due to a gap in awareness of the topic. Our research focuses on improving the efficiency and effectiveness of code review practices, particularly in identifying and addressing security issues in an industrial context. The present work showcases results from using a serious game as a means to empower developers, by exhibiting code review best practices and raising awareness of security concerns. We collect results over a series of 11 experiments conducted in an industrial setting together with a total of 175 industrial practitioners, serving as a pilot stage, based on which we discuss and conclude on important aspects of the design of the game.eng
dc.language.isoeng-
dc.publisherIEEE-
dc.relationinfo:eu-repo/grantAgreement/FCT/Concurso de avaliação no âmbito do Programa Plurianual de Financiamento de Unidades de I&D (2017%2F2018) - Financiamento Base/UIDB%2F04466%2F2020/PT-
dc.relation.ispartofSoftware Engineering Education Conference, Proceedings-
dc.rightsembargoedAccess-
dc.subjectAction design researcheng
dc.subjectCode revieweng
dc.subjectComplianceeng
dc.subjectCybersecurityeng
dc.subjectDeveloper empowermenteng
dc.titleSerious game for industrial cybersecurity: Experiential learning through code revieweng
dc.typeconferenceObject-
dc.event.title36th International Conference on Software Engineering Education and Training, CSEE and T 2024-
dc.event.typeConferênciapt
dc.event.locationWürzburg, Germanyeng
dc.event.date2024-
dc.peerreviewedyes-
dc.date.updated2025-12-17T09:49:45Z-
dc.description.versioninfo:eu-repo/semantics/acceptedVersion-
dc.identifier.doi10.1109/CSEET62301.2024.10663058-
dc.subject.fosDomínio/Área Científica::Ciências Naturais::Ciências da Computação e da Informaçãopor
dc.subject.fosDomínio/Área Científica::Ciências Sociais::Ciências da Educaçãopor
dc.date.embargo2026-03-09-
iscte.identifier.cienciahttps://ciencia.iscte-iul.pt/id/ci-pub-112322-
iscte.alternateIdentifiers.wosWOS:001325262600057-
iscte.alternateIdentifiers.scopus2-s2.0-85204428200-
Aparece nas coleções:ISTAR-CRI - Comunicações a conferências internacionais

Ficheiros deste registo:
Ficheiro TamanhoFormato 
conferenceObject_112322.pdf
  Restricted Access
347,59 kBAdobe PDFVer/Abrir Request a copy


FacebookTwitterDeliciousLinkedInDiggGoogle BookmarksMySpaceOrkut
Formato BibTex mendeley Endnote Logotipo do DeGóis Logotipo do Orcid 

Todos os registos no repositório estão protegidos por leis de copyright, com todos os direitos reservados.