State of Practice in Secure Software
Bill Whyte, John V. Harrison · IGI Global eBooks · 2011
The authors present a synthesis of expert views on some important actions to improve the state of practice in secure software. The main conclusions are: the skill base is lacking; business cases for security good practice are poorly developed: choosing between different ‘good practices’ is difficult; research will only have impact if compatible with the commercial environment of developers and their existent skills. The study is grounded on experiences as panel moderators, rapporteurs and report writers involved in drafting the views of experts. Some research directions are indicated.