On providing systematized access to consolidated principles, guidelines and patterns for usable security research and development
- We present a systematization of usable security principles, guidelines and patterns to facilitate the transfer of existing knowledge to researchers and practitioners. Based on a literature review, we extracted 23 principles, 11 guidelines and 47 patterns for usable security and identified their interconnection. The results indicate that current research tends to focus on only a subset of important principles. The fact that some principles are not yet addressed by any design patterns suggests that further work on refining these patterns is needed. We developed an online repository, which stores the harmonized principles, guidelines and patterns. The tool enables users to search for relevant guidance and explore it in an interactive and programmatic manner. We argue that both the insights presented in this article and the web-based repository will be highly valuable for students to get a good overview, practitioners to implement usable security and researchers to identify areas of future research.
Document Type: | Article |
---|---|
Language: | English |
Author: | Peter L. Gorski, Emanuel von Zezschwitz, Luigi Lo Iacono, Matthew Smith |
Parent Title (English): | Journal of Cybersecurity |
Volume: | 5 |
Issue: | 1 |
Number of pages: | 1 |
First Page: | 40 |
ISSN: | 2057-2085 |
DOI: | https://doi.org/10.1093/cybsec/tyz014 |
Publisher: | Oxford Academic Press |
Place of publication: | Oxford |
Date of first publication: | 2019/12/20 |
Departments, institutes and facilities: | Institut für Cyber Security & Privacy (ICSP) |
Dewey Decimal Classification (DDC): | 0 Informatik, Informationswissenschaft, allgemeine Werke / 00 Informatik, Wissen, Systeme / 005 Computerprogrammierung, Programme, Daten |
Entry in this database: | 2021/06/30 |