A Research Agenda for Security Engineering
Rich Goyette, Yan Robichaud, François Marinier · Technology Innovation Management Review · 2013
IntroductionDespite nearly 30 years of research and application, the practice of information systems security engineering has not yet begun to exhibit the traits of a rigorous scientific discipline (Cybenko and Landwehr, 2012). As a result, it is still not possible to examine an information system and answer the question “How secure is it?” in a scientifically meaningful way.