Guidelines for Supporting Software Engineers in Developing Secure Web Applications
Paper in proceeding, 2025

As software applications get increasingly connected and complex, cybersecurity becomes more and more important to consider during development and evaluation. Software engineers need to be aware of various security threats and the countermeasures that can be taken to mitigate them. Currently, there is a lack of guidance for software engineers aiming to develop secure web applications. We conducted a design science research study, resulting in a set of guidelines to aid software engineers in developing secure web applications. The set of guidelines was constructed based on interview data with 10 industry practitioners. These guidelines were then evaluated using a survey with 28 respondents. Our results indicate that these proposed guidelines can be applied by software engineers to support the development and assessment of secure web applications in different stages of the software development lifecycle.

interviews

guidelines

cybersecurity

web applications

design science research

software engineering

survey

Author

Klara Svensson

Chalmers, Computer Science and Engineering (Chalmers), Software Engineering (Chalmers)

Drake Axelrod

Chalmers, Computer Science and Engineering (Chalmers), Software Engineering (Chalmers)

Mazen Mohamad

Chalmers, Computer Science and Engineering (Chalmers), Interaction Design and Software Engineering

Rebekka Wohlrab

Chalmers, Computer Science and Engineering (Chalmers), Interaction Design and Software Engineering

Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)

03029743 (ISSN) 16113349 (eISSN)

Vol. 15452 123-138
9783031783852 (ISBN)

International Conference on Product-Focused Software Process Improvement (PROFES 2024)
Tartu, Estonia,

Subject Categories (SSIF 2011)

Computer and Information Science

Software Engineering

DOI

10.1007/978-3-031-78386-9_9

More information

Latest update

12/20/2024