Publication in conference proceedings Q3
Design of secure coding challenges for cybersecurity education in the industry
Tiago Espinha Gasiba (Gasiba, Tiago); Ulrike Lechner (Lechner, Ulrike); Maria Pinto-Albuquerque (Pinto-Albuquerque, M.); Alae Zouitni (Zouitni, Alae);
Quality of Information and Communications Technology. QUATIC 2020.
Year (definitive publication)
2020
Language
English
Country
Germany
More Information
Web of Science®

This publication is not indexed in Web of Science®

Scopus

Times Cited: 11

(Last checked: 2024-11-17 06:04)

View record in Scopus


: 5.4
Google Scholar

Times Cited: 19

(Last checked: 2024-11-22 02:40)

View record in Google Scholar

Abstract
To minimize the possibility of introducing vulnerabilities in source code, software developers in the industry may attend security awareness and secure coding training. One promising novel approach to raise awareness is to use cybersecurity challenges in a capture-the-flag event. In order for this to be effective, the types of challenges must be adequately designed to address the target group. In this work we look at how to design challenges for software developers in an industrial context, based on survey given to security experts by gathering their experience on the field. While our results show that traditional methods seem to be adequate, they also reveal a new class of challenges based on code entry and interaction with an automated coach.
Acknowledgements
This work is financed by portuguese national funds through FCT- Fundação para a Ciência e Tecnologia, I.P., under the project FCT UIDB/04466/2020. Furthermore, the third author thanks the Instituto Universitário de Lisboa and ISTAR-IUL for their support.
Keywords
Teaching,Cybersecurity,Capture-the-flag,Challenges,Automation,Coaching,Secure,Coding,Programming
  • Mathematics - Natural Sciences
  • Computer and Information Sciences - Natural Sciences
Funding Records
Funding Reference Funding Entity
FCT UIDB/04466/2020 FCT- Fundação para a Ciência e Tecnologia, I.P.

With the objective to increase the research activity directed towards the achievement of the United Nations 2030 Sustainable Development Goals, the possibility of associating scientific publications with the Sustainable Development Goals is now available in Ciência-IUL. These are the Sustainable Development Goals identified by the author(s) for this publication. For more detailed information on the Sustainable Development Goals, click here.