{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,18]],"date-time":"2026-07-18T10:50:58Z","timestamp":1784371858950,"version":"3.55.0"},"reference-count":86,"publisher":"Springer Science and Business Media LLC","issue":"4","license":[{"start":{"date-parts":[[2021,5,18]],"date-time":"2021-05-18T00:00:00Z","timestamp":1621296000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2021,5,18]],"date-time":"2021-05-18T00:00:00Z","timestamp":1621296000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Empir Software Eng"],"published-print":{"date-parts":[[2021,7]]},"abstract":"<jats:title>Abstract<\/jats:title><jats:p>Security Assurance Cases (SAC) are a form of structured argumentation used to reason about the security properties of a system. After the successful adoption of assurance cases for safety, SAC are getting significant traction in recent years, especially in safety-critical industries (e.g., automotive), where there is an increasing pressure to be compliant with several security standards and regulations. Accordingly, research in the field of SAC has flourished in the past decade, with different approaches being investigated. In an effort to systematize this active field of research, we conducted a systematic literature review (SLR) of the existing academic studies on SAC. Our review resulted in an in-depth analysis and comparison of 51 papers. Our results indicate that, while there are numerous papers discussing the importance of SAC and their usage scenarios, the literature is still immature with respect to concrete support for practitioners on how to build and maintain a SAC. More importantly, even though some methodologies are available, their validation and tool support is still lacking.<\/jats:p>","DOI":"10.1007\/s10664-021-09971-7","type":"journal-article","created":{"date-parts":[[2021,6,4]],"date-time":"2021-06-04T09:23:44Z","timestamp":1622798624000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":24,"title":["Security assurance cases\u2014state of the art of an emerging approach"],"prefix":"10.1007","volume":"26","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-3446-1265","authenticated-orcid":false,"given":"Mazen","family":"Mohamad","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jan-Philipp","family":"Stegh\u00f6fer","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Riccardo","family":"Scandariato","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2021,5,18]]},"reference":[{"key":"9971_CR1","unstructured":"Adelard (1998) The adelard safety case development manual"},{"key":"9971_CR2","unstructured":"Adelard (2003) The adelard safety case editor\u2014asce. Product description available at: http:\/\/adelard.co.uk\/software\/asce\/"},{"key":"9971_CR3","doi-asserted-by":"crossref","unstructured":"Agudo I, Vivas J L, L\u00f3pez J (2009) Security assurance during the software development cycle. In: Proceedings of the international conference on computer systems and technologies and workshop for PhD students in computing. ACM, p 20","DOI":"10.1145\/1731740.1731763"},{"key":"9971_CR4","unstructured":"Alexander R, Hawkins R, Kelly T (2011) Security assurance cases: motivation and the state of the art. High Integrity Systems Engineering Department of Computer Science University of York, Deramore Lane York YO10 5GH"},{"key":"9971_CR5","doi-asserted-by":"publisher","unstructured":"Ankrum T S, Kromholz A H (2005) Structured assurance cases: three common standards. In: Ninth IEEE international symposium on high-assurance systems engineering (HASE\u201905). https:\/\/doi.org\/10.1109\/HASE.2005.20, pp 99\u2013108","DOI":"10.1109\/HASE.2005.20"},{"key":"9971_CR6","unstructured":"Australian Research Council (2018) Excellence in research for Australia. https:\/\/www.arc.gov.au\/excellence-research-australia"},{"key":"9971_CR7","unstructured":"Behrmann G, David A, Larsen K G, H\u00e5kansson J, Pettersson P, Yi W, Hendriks M (2006) Uppaal 4.0. In: Behrmann G et al (eds) Uppaal 4.0. Third international conference on the quantitative evaluation of SysTems (QEST 2006). IEEE Computer Society, Los Alamitos"},{"key":"9971_CR8","doi-asserted-by":"crossref","unstructured":"Ben Othmane L, Ali A (2016) Towards effective security assurance for incremental software development the case of zen cart application. In: 2016 11th International conference on availability, reliability and security (ARES). IEEE, pp 564\u2013571","DOI":"10.1109\/ARES.2016.86"},{"key":"9971_CR9","doi-asserted-by":"crossref","unstructured":"Ben Othmane L, Angin P, Bhargava B (2014) Using assurance cases to develop iteratively security features using scrum. In: 2014 Ninth international conference on availability, reliability and security. IEEE, pp 490\u2013497","DOI":"10.1109\/ARES.2014.73"},{"key":"9971_CR10","doi-asserted-by":"crossref","unstructured":"Birch J, Rivett R, Habli I, Bradshaw B, Botham J, Higham D, Jesty P, Monkhouse H, Palin R (2013) Safety cases and their role in iso 26262 functional safety assessment. In: International conference on computer safety, reliability, and security. Springer, pp 154\u2013165","DOI":"10.1007\/978-3-642-40793-2_15"},{"key":"9971_CR11","doi-asserted-by":"crossref","unstructured":"Bloomfield R, Bishop P (2010) Safety and assurance cases: past, present and possible future\u2013an adelard perspective. In: Making systems safer. Springer, pp 51\u201367","DOI":"10.1007\/978-1-84996-086-1_4"},{"key":"9971_CR12","doi-asserted-by":"crossref","unstructured":"Bloomfield R, Bishop P, Butler E, Netkachova K (2017) Using an assurance case framework to develop security strategy and policies. In: International conference on computer safety, reliability, and security. Springer, pp 27\u201338","DOI":"10.1007\/978-3-319-66284-8_3"},{"issue":"11","key":"9971_CR13","doi-asserted-by":"publisher","first-page":"1039","DOI":"10.1109\/TSE.2017.2738640","volume":"44","author":"R Calinescu","year":"2017","unstructured":"Calinescu R, Weyns D, Gerasimou S, Iftikhar M U, Habli I, Kelly T (2017) Engineering trustworthy self-adaptive software with dynamic assurance cases. IEEE Trans Softw Eng 44(11):1039\u20131069","journal-title":"IEEE Trans Softw Eng"},{"key":"9971_CR14","unstructured":"Campbell D T, Stanley J C (2015) Experimental and quasi-experimental designs for research. Ravenio Books"},{"key":"9971_CR15","doi-asserted-by":"publisher","first-page":"360","DOI":"10.1016\/j.cose.2018.04.008","volume":"77","author":"M Cheah","year":"2018","unstructured":"Cheah M, Shaikh S A, Bryans J, Wooderson P (2018) Building an automotive security assurance case using systematic security evaluations. Comput Secur 77:360\u2013379","journal-title":"Comput Secur"},{"key":"9971_CR16","doi-asserted-by":"crossref","unstructured":"Chindamaikul K, Takai T, Iida H (2014) Retrieving information from a document repository for constructing assurance cases. In: 2014 IEEE international symposium on software reliability engineering workshops. IEEE, pp 198\u2013203","DOI":"10.1109\/ISSREW.2014.65"},{"key":"9971_CR17","doi-asserted-by":"crossref","unstructured":"Cockram T, Lautieri S (2007) Combining security and safety principles in practice. In: Proceedings of the 2nd institution of engineering and technology international conference on system safety. IET, pp 159\u2013164","DOI":"10.1049\/cp:20070458"},{"key":"9971_CR18","first-page":"173","volume":"14","author":"JW Coffey","year":"2014","unstructured":"Coffey J W, Snider D, Reichherzer T, Wilde N (2014) Concept mapping for the efficient generation and communication of security assurance cases. Proc IMCIC 14:173\u2013177","journal-title":"Proc IMCIC"},{"key":"9971_CR19","unstructured":"Computing Research and Education Association of Australasia: core ranking portal\u2014computing research and education. https:\/\/www.core.edu.au\/conference-portal (2018)"},{"key":"9971_CR20","doi-asserted-by":"crossref","unstructured":"Cyra L, Gorski J (2007) Supporting compliance with security standards by trust case templates. In: 2nd International conference on dependability of computer systems (DepCoS-RELCOMEX\u201907). IEEE, pp 91\u201398","DOI":"10.1109\/DEPCOS-RELCOMEX.2007.44"},{"key":"9971_CR21","doi-asserted-by":"crossref","unstructured":"Easterbrook S, Singer J, Storey M A, Damian D (2008) Selecting empirical methods for software engineering research. In: Guide to advanced empirical software engineering. Springer, pp 285\u2013311","DOI":"10.1007\/978-1-84800-044-5_11"},{"key":"9971_CR22","unstructured":"Feiler P H, Gluch D P (2012) Model-based engineering with AADL: an introduction to the SAE architecture analysis & design language. Addison-Wesley"},{"key":"9971_CR23","doi-asserted-by":"crossref","unstructured":"Finnegan A, McCaffery F (2014a) A security argument pattern for medical device assurance cases. In: 2014 IEEE international symposium on software reliability engineering workshops. IEEE, pp 220\u2013225","DOI":"10.1109\/ISSREW.2014.89"},{"key":"9971_CR24","doi-asserted-by":"crossref","unstructured":"Finnegan A, McCaffery F (2014b) Towards an international security case framework for networked medical devices. In: International conference on computer safety, reliability, and security. Springer, pp 197\u2013209","DOI":"10.1007\/978-3-319-24255-2_15"},{"key":"9971_CR25","doi-asserted-by":"crossref","unstructured":"Finnegan A, McCaffery F, Coleman G (2013) A process assessment model for security assurance of networked medical devices. In: International conference on software process improvement and capability determination. Springer, pp 25\u201336","DOI":"10.1007\/978-3-642-38833-0_3"},{"key":"9971_CR26","doi-asserted-by":"crossref","unstructured":"Fung N L, Kokaly S, Di Sandro A, Salay R, Chechik M (2018) Mmint-a: a tool for automated change impact assessment on assurance cases. In: International conference on computer safety, reliability, and security. Springer, pp 60\u201370","DOI":"10.1007\/978-3-319-99229-7_7"},{"issue":"3","key":"9971_CR27","doi-asserted-by":"publisher","first-page":"19","DOI":"10.1145\/2692956.2663177","volume":"34","author":"A Gacek","year":"2014","unstructured":"Gacek A, Backes J, Cofer D, Slind K, Whalen M (2014) Resolute: an assurance case language for architecture models. ACM SIGAda Ada Lett 34(3):19\u201328","journal-title":"ACM SIGAda Ada Lett"},{"issue":"9","key":"9971_CR28","first-page":"82","volume":"4","author":"D Gade","year":"2015","unstructured":"Gade D, Deshpande S (2015) A literature review on assurance driven software design. Int J Adv Res Comput Commun Eng 4(9):82\u201387","journal-title":"Int J Adv Res Comput Commun Eng"},{"key":"9971_CR29","doi-asserted-by":"crossref","unstructured":"Gallo R, Dahab R (2015) Assurance cases as a didactic tool for information security. In: IFIP World conference on information security education. Springer, pp 15\u201326","DOI":"10.1007\/978-3-319-18500-2_2"},{"key":"9971_CR30","unstructured":"GessNet (2011) TurboacTM assurance cases. https:\/\/www.gessnet.com\/\/"},{"key":"9971_CR31","doi-asserted-by":"crossref","unstructured":"Goodger A, Caldwell N, Knowles J (2012) What does the assurance case approach deliver for critical information infrastructure protection in cybersecurity?. In: 7th IET International conference on system safety, incorporating the Cyber security conference. IET","DOI":"10.1049\/cp.2012.1501"},{"key":"9971_CR32","doi-asserted-by":"crossref","unstructured":"G\u00f3rski J, Jarz\u0119bowicz A, Miler J, Witkowicz M, Czy\u017cnikiewicz J, Jar P (2012) Supporting assurance by evidence-based argument services. In: International conference on computer safety, reliability, and security. Springer, pp 417\u2013426","DOI":"10.1007\/978-3-642-33675-1_39"},{"issue":"9","key":"9971_CR33","doi-asserted-by":"publisher","first-page":"1551","DOI":"10.1016\/j.infsof.2013.02.008","volume":"55","author":"PJ Graydon","year":"2013","unstructured":"Graydon P J, Kelly T P (2013) Using argumentation to evaluate software assurance standards. Inf Softw Technol 55(9):1551\u20131562","journal-title":"Inf Softw Technol"},{"key":"9971_CR34","unstructured":"Group GCSW (2011) Gsn community standard. Available at www.goalstructuringnotation.info\/"},{"key":"9971_CR35","unstructured":"G.U. of Technology (2010) Nor-sta. https:\/\/www.nor-sta.eu\/en\/"},{"key":"9971_CR36","unstructured":"Haley C B, Moffett J D, Laney R, Nuseibeh B (2005) Arguing security: validating security requirements using structured argumentation. In: Proceedings of the 3rd symposium on requirements engineering for information security (SREIS\u201905)"},{"key":"9971_CR37","doi-asserted-by":"crossref","unstructured":"Hawkins R, Habli I, Kolovos D, Paige R, Kelly T (2015) Weaving an assurance case from design: a model-based approach. In: 2015 IEEE 16th international symposium on high assurance systems engineering. IEEE, pp 110\u2013117","DOI":"10.1109\/HASE.2015.25"},{"key":"9971_CR38","doi-asserted-by":"crossref","unstructured":"He Y, Johnson C (2012) Generic security cases for information system security in healthcare systems. In: 7th IET international conference on system safety, incorporating the Cyber security conference. IET","DOI":"10.1049\/cp.2012.1507"},{"key":"9971_CR39","unstructured":"International Organization for Standardization (2011) ISO 26262 Road vehicles\u2014Functional safety, 1st edn"},{"key":"9971_CR40","unstructured":"International Organization for Standardization and Society of Automotive Engineers (2018) ISO\/SAE 21434 Road vehicles\u2014Cybersecurity Engineering, CD Draft"},{"key":"9971_CR41","doi-asserted-by":"publisher","unstructured":"Ionita D, Kegel R, Baltuta A, Wieringa R (2016) Arguesecure: out-of-the-box security risk assessment. In: 2016 IEEE 24th international requirements engineering conference workshops (REW). https:\/\/doi.org\/10.1109\/REW.2016.027, pp 74\u201379","DOI":"10.1109\/REW.2016.027"},{"key":"9971_CR42","doi-asserted-by":"crossref","unstructured":"Ionita D, Ford M, Vasenev A, Wieringa R (2017) Graphical modeling of security arguments: current state and future directions. In: International workshop on graphical models for security. Springer, pp 1\u201316","DOI":"10.1007\/978-3-319-74860-3_1"},{"key":"9971_CR43","unstructured":"Kitchenham B, et al. (2007) Guidelines for performing systematic literature reviews in software engineering. Tech. Rep. EBSE-2007-12007 Keele University"},{"issue":"4","key":"9971_CR44","doi-asserted-by":"publisher","first-page":"73","DOI":"10.1109\/MSP.2015.68","volume":"13","author":"J Knight","year":"2015","unstructured":"Knight J (2015) The importance of security cases: proof is good, but not enough. IEEE Secur Privacy 13(4):73\u201375","journal-title":"IEEE Secur Privacy"},{"key":"9971_CR45","unstructured":"Lipson H, Weinstock C (2008) Evidence of assurance: laying the foundation for a credible security case. Tech. rep., Carnegie Mellon University"},{"key":"9971_CR46","doi-asserted-by":"crossref","unstructured":"Maksimov M, Fung N L, Kokaly S, Chechik M (2018) Two decades of assurance case tools: a survey. In: International conference on computer safety, reliability, and security. Springer, pp 49\u201359","DOI":"10.1007\/978-3-319-99229-7_6"},{"key":"9971_CR47","doi-asserted-by":"publisher","unstructured":"Maksimov M, Kokaly S, Chechik M (2019) A survey of tool-supported assurance case assessment techniques. ACM Comput Surv 52(5). https:\/\/doi.org\/10.1145\/3342481","DOI":"10.1145\/3342481"},{"key":"9971_CR48","doi-asserted-by":"crossref","unstructured":"Masumoto M, Tokuno T, Yanamoto S (2013) A method for assuring service grade with assurance case: An experiment on a portal service. In: 2013 IEEE international symposium on software reliability engineering workshops (ISSREW). IEEE, pp 311\u2013314","DOI":"10.1109\/ISSREW.2013.6688912"},{"key":"9971_CR49","doi-asserted-by":"crossref","unstructured":"Matsuno Y, Takamura H, Ishikawa Y (2010) A dependability case editor with pattern library. In: 2010 IEEE 12th international symposium on high assurance systems engineering. IEEE, pp 170\u2013171","DOI":"10.1109\/HASE.2010.26"},{"key":"9971_CR50","doi-asserted-by":"publisher","unstructured":"Mohamad M, \u00c5str\u00f6m A, Askerdal O, Borg J, Scandariato R (2020) Security assurance cases for road vehicles: an industry perspective. In: Proceedings of the 15th international conference on availability, reliability and security, ARES \u201920. https:\/\/doi.org\/10.1145\/3407023.3407033. Association for Computing Machinery, New York","DOI":"10.1145\/3407023.3407033"},{"key":"9971_CR51","doi-asserted-by":"crossref","unstructured":"Mohammadi N G, Ulfat-Bunyadi N, Heisel M (2018) Trustworthiness cases\u2013toward preparation for the trustworthiness certification. In: International conference on trust and privacy in digital business. Springer, pp 244\u2013259","DOI":"10.1007\/978-3-319-98385-1_17"},{"key":"9971_CR52","doi-asserted-by":"crossref","unstructured":"Nair S, de la Vara J L, Sabetzadeh M, Briand L (2013) Classification, structuring, and assessment of evidence for safety\u2013a systematic literature review. In: 2013 IEEE sixth international conference on software testing, verification and validation. IEEE, pp 94\u2013103","DOI":"10.1109\/ICST.2013.30"},{"issue":"6","key":"9971_CR53","doi-asserted-by":"publisher","first-page":"98","DOI":"10.1109\/MC.2016.158","volume":"49","author":"K Netkachova","year":"2016","unstructured":"Netkachova K, Bloomfield R E (2016) Security-informed safety. Computer 49(6):98\u2013102","journal-title":"Computer"},{"key":"9971_CR54","doi-asserted-by":"crossref","unstructured":"Netkachova K, Bloomfield R, Popov P, Netkachov O (2014) Using structured assurance case approach to analyse security and reliability of critical infrastructures. In: International conference on computer safety, reliability, and security. Springer, pp 345\u2013354","DOI":"10.1007\/978-3-319-24249-1_30"},{"key":"9971_CR55","doi-asserted-by":"crossref","unstructured":"Netkachova K, M\u00fcller K, Paulitsch M, Bloomfield R (2015) Investigation into a layered approach to architecting security-informed safety cases. In: 2015 IEEE\/AIAA 34th digital avionics systems conference (DASC). IEEE, pp 6B4\u20131","DOI":"10.1109\/DASC.2015.7311447"},{"key":"9971_CR56","unstructured":"Object Management Group (OMG) (2020) Structured assurance case metamodel (SACM), version 2.1. OMG Document Number formal\/20-04-01 (https:\/\/www.omg.org\/spec\/SACM\/2.1\/PDF)"},{"key":"9971_CR57","doi-asserted-by":"crossref","unstructured":"Palin R, Ward D, Habli I, Rivett R (2011) Iso 26262 safety cases: compliance and assurance. In: 6th IET international conference on system safety. IET","DOI":"10.1049\/cp.2011.0251"},{"key":"9971_CR58","doi-asserted-by":"publisher","first-page":"954","DOI":"10.1016\/j.procs.2013.09.179","volume":"22","author":"V Patu","year":"2013","unstructured":"Patu V, Yamamoto S (2013a) How to develop security case by combining real life security experiences (evidence) with d-case. Procedia Comput Sci 22:954\u2013959","journal-title":"Procedia Comput Sci"},{"key":"9971_CR59","doi-asserted-by":"crossref","unstructured":"Patu V, Yamamoto S (2013b) Identifying and implementing security patterns for a dependable security case\u2013from security patterns to d-case. In: 2013 IEEE 16th international conference on computational science and engineering. IEEE, pp 138\u2013142","DOI":"10.1109\/CSE.2013.31"},{"key":"9971_CR60","doi-asserted-by":"publisher","first-page":"110","DOI":"10.1016\/j.ress.2012.09.011","volume":"110","author":"L Pi\u00e8tre-Cambac\u00e9d\u00e8s","year":"2013","unstructured":"Pi\u00e8tre-Cambac\u00e9d\u00e8s L, Bouissou M (2013) Cross-fertilization between safety and security engineering. Reliab Eng Syst Saf 110:110\u2013126. https:\/\/doi.org\/10.1016\/j.ress.2012.09.011. http:\/\/www.sciencedirect.com\/science\/article\/pii\/S0951832012001913","journal-title":"Reliab Eng Syst Saf"},{"key":"9971_CR61","doi-asserted-by":"publisher","first-page":"499","DOI":"10.1016\/j.procs.2011.08.092","volume":"6","author":"BR Poreddy","year":"2011","unstructured":"Poreddy B R, Corns S (2011) Arguing security of generic avionic mission control computer system (mcc) using assurance cases. Procedia Comput Sci 6:499\u2013504","journal-title":"Procedia Comput Sci"},{"issue":"5","key":"9971_CR62","doi-asserted-by":"publisher","first-page":"56","DOI":"10.1109\/MDAT.2015.2468222","volume":"32","author":"A Ray","year":"2015","unstructured":"Ray A, Cleaveland R (2015) Security assurance cases for medical cyber\u2013physical systems. IEEE Des Test 32(5):56\u201365","journal-title":"IEEE Des Test"},{"key":"9971_CR63","doi-asserted-by":"crossref","unstructured":"Rodes B D, Knight J C, Wasson K S (2014) A security metric based on security arguments. In: Proceedings of the 5th international workshop on emerging trends in software metrics. ACM, pp 66\u201372","DOI":"10.1145\/2593868.2593880"},{"issue":"2","key":"9971_CR64","doi-asserted-by":"publisher","first-page":"131","DOI":"10.1007\/s10664-008-9102-8","volume":"14","author":"P Runeson","year":"2009","unstructured":"Runeson P, H\u00f6st M (2009) Guidelines for conducting and reporting case study research in software engineering. Empir Softw Eng 14(2):131","journal-title":"Empir Softw Eng"},{"key":"9971_CR65","doi-asserted-by":"publisher","first-page":"37","DOI":"10.2307\/23043488","volume":"35","author":"M Sein","year":"2011","unstructured":"Sein M, Henfridsson O, Purao S, Rossi M, Lindgren R (2011) Action design research. MIS Q 35:37\u201356. https:\/\/doi.org\/10.2307\/23043488","journal-title":"MIS Q"},{"key":"9971_CR66","doi-asserted-by":"crossref","unstructured":"Shortt C, Weber J (2015) Hermes: a targeted fuzz testing framework. In: International conference on intelligent software methodologies, tools, and techniques. Springer, pp 453\u2013468","DOI":"10.1007\/978-3-319-22689-7_35"},{"key":"9971_CR67","unstructured":"Singapore A D S C (2015) Cybersage https:\/\/www.illinois.adsc.com.sg\/cybersage\/index.html\/"},{"key":"9971_CR68","doi-asserted-by":"crossref","unstructured":"Sklyar V, Kharchenko V (2016) Assurance case driven design for computer systems: graphical notations versus mathematical methods. In: 2016 Third international conference on mathematics and computers in sciences and in industry (MCSI). IEEE, pp 308\u2013312","DOI":"10.1109\/MCSI.2016.063"},{"key":"9971_CR69","doi-asserted-by":"crossref","unstructured":"Sklyar V, Kharchenko V (2017a) Challenges in assurance case application for industrial iot. In: 2017 9th IEEE international conference on intelligent data acquisition and advanced computing systems: technology and applications (IDAACS), vol 2. IEEE, pp 736\u2013739","DOI":"10.1109\/IDAACS.2017.8095187"},{"key":"9971_CR70","unstructured":"Sklyar V V, Kharchenko V S (2017b) Assurance case driven design based on the harmonized framework of safety and security requirements. In: ICTERI, pp 670\u2013685"},{"key":"9971_CR71","doi-asserted-by":"crossref","unstructured":"Sklyar V, Kharchenko V (2019) Green assurance case: applications for internet of things. In: Green IT engineering: social, business and industrial applications. Springer, pp 351\u2013371","DOI":"10.1007\/978-3-030-00253-4_15"},{"key":"9971_CR72","doi-asserted-by":"crossref","unstructured":"Sljivo I, Gallina B (2016) Building multiple-viewpoint assurance cases using assumption\/guarantee contracts. In: Proccedings of the 10th European conference on software architecture workshops. ACM, p 39","DOI":"10.1145\/2993412.3007555"},{"key":"9971_CR73","doi-asserted-by":"crossref","unstructured":"Spriggs J (2012) GSN-the goal structuring notation: a structured approach to presenting arguments. Springer Science & Business Media","DOI":"10.1007\/978-1-4471-2312-5"},{"key":"9971_CR74","doi-asserted-by":"crossref","unstructured":"Strielkina A, Illiashenko O, Zhydenko M, Uzun D (2018) Cybersecurity of healthcare iot-based systems: regulation and case-oriented assessment. In: 2018 IEEE 9th international conference on dependable systems, services and technologies (DESSERT). IEEE, pp 67\u201373","DOI":"10.1109\/DESSERT.2018.8409101"},{"key":"9971_CR75","doi-asserted-by":"crossref","unstructured":"Taguchi K, Souma D, Nishihara H (2014) Safe & sec case patterns. In: International conference on computer safety, reliability, and security. Springer, pp 27\u201337","DOI":"10.1007\/978-3-319-24249-1_3"},{"key":"9971_CR76","doi-asserted-by":"crossref","unstructured":"Tippenhauer N O, Temple W G, Vu A H, Chen B, Nicol D M, Kalbarczyk Z, Sanders W H (2014) Automatic generation of security argument graphs. In: 2014 IEEE 20th pacific rim international symposium on dependable computing. IEEE, pp 33\u201342","DOI":"10.1109\/PRDC.2014.13"},{"key":"9971_CR77","doi-asserted-by":"publisher","DOI":"10.1017\/CBO9780511840005","volume-title":"The uses of argument","author":"SE Toulmin","year":"2003","unstructured":"Toulmin S E (2003) The uses of argument. Cambridge University Press, Cambridge"},{"issue":"1","key":"9971_CR78","doi-asserted-by":"publisher","first-page":"55","DOI":"10.1007\/s00766-010-0114-8","volume":"16","author":"JL Vivas","year":"2011","unstructured":"Vivas J L, Agudo I, L\u00f3pez J (2011) A methodology for security assurance-driven system development. Requir Eng 16(1):55\u201373","journal-title":"Requir Eng"},{"key":"9971_CR79","unstructured":"Weinstock CB, Goodenough JB, Lipson HF (2007) Arguing security-creating security assurance cases. Tech. rep., Software Engineering Institute\u2014Carnegie Mellon University. https:\/\/resources.sei.cmu.edu\/library\/asset-view.cfm?assetid=\u2009293629. Part of the collection \u201cResources for Assurance Cases\u201d"},{"key":"9971_CR80","unstructured":"Willadsen K (2011) Meld. https:\/\/meldmerge.org\/"},{"key":"9971_CR81","doi-asserted-by":"crossref","unstructured":"Wohlin C (2014) Guidelines for snowballing in systematic literature studies and a replication in software engineering. In: Proceedings of the 18th international conference on evaluation and assessment in software engineering. Citeseer, p 38","DOI":"10.1145\/2601248.2601268"},{"key":"9971_CR82","doi-asserted-by":"crossref","unstructured":"Wohlin C, Runeson P, H\u00f6st M, Ohlsson M C, Regnell B, Wessl\u00e9n A (2012) Experimentation in software engineering. Springer Science & Business Media","DOI":"10.1007\/978-3-642-29044-2"},{"key":"9971_CR83","doi-asserted-by":"crossref","unstructured":"Xu B, Lu M, Zhang D (2017) A layered argument strategy for software security case development. In: 2017 IEEE international symposium on software reliability engineering workshops (ISSREW). IEEE, pp 331\u2013338","DOI":"10.1109\/ISSREW.2017.52"},{"key":"9971_CR84","doi-asserted-by":"crossref","unstructured":"Yamamoto S (2015) Assuring security through attribute gsn. In: 2015 5th International conference on IT convergence and security (ICITCS). IEEE, pp 1\u20135","DOI":"10.1109\/ICITCS.2015.7292954"},{"key":"9971_CR85","unstructured":"Yin R K et al (2003) Design and methods. Case Study Research 3"},{"key":"9971_CR86","doi-asserted-by":"publisher","unstructured":"Yu Y, Tun T T, Tedeschi A, Franqueira V N L, Nuseibeh B (2011) Openargue: supporting argumentation to evolve secure software systems. In: 2011 IEEE 19th international requirements engineering conference. https:\/\/doi.org\/10.1109\/RE.2011.6051671, pp 351\u2013352","DOI":"10.1109\/RE.2011.6051671"}],"container-title":["Empirical Software Engineering"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10664-021-09971-7.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10664-021-09971-7\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10664-021-09971-7.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,6,23]],"date-time":"2021-06-23T12:30:30Z","timestamp":1624451430000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10664-021-09971-7"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,5,18]]},"references-count":86,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2021,7]]}},"alternative-id":["9971"],"URL":"https:\/\/doi.org\/10.1007\/s10664-021-09971-7","relation":{},"ISSN":["1382-3256","1573-7616"],"issn-type":[{"value":"1382-3256","type":"print"},{"value":"1573-7616","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021,5,18]]},"assertion":[{"value":"14 April 2021","order":1,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"18 May 2021","order":2,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}],"article-number":"70"}}