{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,6]],"date-time":"2026-06-06T16:47:30Z","timestamp":1780764450731,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":29,"publisher":"ACM","license":[{"start":{"date-parts":[[2006,5,20]],"date-time":"2006-05-20T00:00:00Z","timestamp":1148083200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2006,5,20]]},"DOI":"10.1145\/1137627.1137634","type":"proceedings-article","created":{"date-parts":[[2006,7,24]],"date-time":"2006-07-24T16:53:01Z","timestamp":1153759981000},"page":"35-42","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":72,"title":["A framework for security requirements engineering"],"prefix":"10.1145","author":[{"given":"Charles B.","family":"Haley","sequence":"first","affiliation":[{"name":"The Open University, Milton Keynes, UK"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jonathan D.","family":"Moffett","sequence":"additional","affiliation":[{"name":"The Open University, Milton Keynes, UK"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Robin","family":"Laney","sequence":"additional","affiliation":[{"name":"The Open University, Milton Keynes, UK"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Bashar","family":"Nuseibeh","sequence":"additional","affiliation":[{"name":"The Open University, Milton Keynes, UK"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2006,5,20]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1049\/cce:20030108"},{"key":"e_1_3_2_1_2_1","volume-title":"Proceedings of the Fifth National Colloquium for Information Systems Security Education (NCISSE'01)","author":"Allen J.H.","year":"2001","unstructured":"Allen , J.H. : CERT System and Network Security Practices . In Proceedings of the Fifth National Colloquium for Information Systems Security Education (NCISSE'01) , George Mason University, Fairfax, VA USA, 22- -24 May 2001 .]] Allen, J.H.: CERT System and Network Security Practices. In Proceedings of the Fifth National Colloquium for Information Systems Security Education (NCISSE'01), George Mason University, Fairfax, VA USA, 22--24 May 2001.]]"},{"key":"e_1_3_2_1_3_1","volume-title":"Security Engineering: A Guide to Building Dependable Distributed Systems","author":"Anderson R.","year":"2001","unstructured":"Anderson , R. : Security Engineering: A Guide to Building Dependable Distributed Systems . 2001 .]] Anderson, R.: Security Engineering: A Guide to Building Dependable Distributed Systems. 2001.]]"},{"key":"e_1_3_2_1_4_1","first-page":"29","volume-title":"Earp","author":"Ant\u00f3n A.I.","year":"2001","unstructured":"Ant\u00f3n , A.I. , Earp , J.B. : Strategies for Developing Policies and Requirements for Secure E-Commerce Systems. In E-Commerce Security and Privacy, vol. 2 , Advances In Information Security, A. K. Ghosh, Ed.: Kluwer Academic Publishers , Jan 15 2001 , pp. 29 -- 46 .]] Ant\u00f3n, A.I., Earp, J.B.: Strategies for Developing Policies and Requirements for Secure E-Commerce Systems. In E-Commerce Security and Privacy, vol. 2, Advances In Information Security, A. K. Ghosh, Ed.: Kluwer Academic Publishers, Jan 15 2001, pp. 29--46.]]"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.1989.36295"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1002\/spe.v35:9"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/336512.336559"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.5381\/jot.2004.3.1.c6"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1007\/s00766-005-0023-4"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/976270.976285"},{"key":"e_1_3_2_1_11_1","volume-title":"B.: Arguing Security: Validating Security Requirements Using Structured Argumentation. In Proceedings of the Third Symposium on Requirements Engineering for Information Security (SREIS'05)","author":"Haley C.B.","year":"2005","unstructured":"Haley , C.B. , Moffett , J.D. , Laney , R. , Nuseibeh , B.: Arguing Security: Validating Security Requirements Using Structured Argumentation. In Proceedings of the Third Symposium on Requirements Engineering for Information Security (SREIS'05) held in conjunction with the 13th International Requirements Engineering Conference (RE'05), Paris France , 29 Aug 2005 .]] Haley, C.B., Moffett, J.D., Laney, R., Nuseibeh, B.: Arguing Security: Validating Security Requirements Using Structured Argumentation. In Proceedings of the Third Symposium on Requirements Engineering for Information Security (SREIS'05) held in conjunction with the 13th International Requirements Engineering Conference (RE'05), Paris France, 29 Aug 2005.]]"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.5555\/646768.704460"},{"key":"e_1_3_2_1_13_1","volume-title":"ISO\/IEC","year":"1999","unstructured":"ISO\/IEC : Information Technology - Security Techniques - Evaluation Criteria for IT Security - Part 1: Introduction and General Model. International Standard 15408-1 , ISO\/IEC , Geneva Switzerland , 1 Dec 1999 .]] ISO\/IEC: Information Technology - Security Techniques - Evaluation Criteria for IT Security - Part 1: Introduction and General Model. International Standard 15408-1, ISO\/IEC, Geneva Switzerland, 1 Dec 1999.]]"},{"key":"e_1_3_2_1_14_1","volume-title":"ISO\/IEC","year":"1999","unstructured":"ISO\/IEC : Information Technology - Security Techniques - Evaluation Criteria for IT Security - Part 2: Security Functional Requirements. International Standard 15408-2 , ISO\/IEC , Geneva Switzerland , 1 Dec 1999 .]] ISO\/IEC: Information Technology - Security Techniques - Evaluation Criteria for IT Security - Part 2: Security Functional Requirements. International Standard 15408-2, ISO\/IEC, Geneva Switzerland, 1 Dec 1999.]]"},{"key":"e_1_3_2_1_15_1","volume-title":"ISO\/IEC","year":"1999","unstructured":"ISO\/IEC : Information Technology - Security Techniques - Evaluation Criteria for IT Security - Part 3: Security Assurance Requirements. International Standard 15408-3 , ISO\/IEC , Geneva Switzerland , 1 Dec 1999 .]] ISO\/IEC: Information Technology - Security Techniques - Evaluation Criteria for IT Security - Part 3: Security Assurance Requirements. International Standard 15408-3, ISO\/IEC, Geneva Switzerland, 1 Dec 1999.]]"},{"key":"e_1_3_2_1_16_1","volume-title":"Problem Frames","author":"Jackson M.","year":"2001","unstructured":"Jackson , M. : Problem Frames . Addison Wesley , 2001 .]] Jackson, M.: Problem Frames. Addison Wesley, 2001.]]"},{"key":"e_1_3_2_1_17_1","volume-title":"Sommerville","author":"Kotonya G.","year":"1998","unstructured":"Kotonya , G. , Sommerville , I. : Requirements Engineering: Processes and Techniques . United Kingdom : John Wiley and Sons , 1998 .]] Kotonya, G., Sommerville, I.: Requirements Engineering: Processes and Techniques. United Kingdom: John Wiley and Sons, 1998.]]"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.5555\/998675.999421"},{"issue":"4","key":"e_1_3_2_1_19_1","first-page":"345","volume":"21","author":"Lee Y.","year":"2002","unstructured":"Lee , Y. , Lee , J. , Lee , Z. : Integrating Software Lifecycle Process Standards with Security Engineering. Computers and Security , 21 ( 4 ) ( 2002 ), 345 -- 355 .]] Lee, Y., Lee, J., Lee, Z.: Integrating Software Lifecycle Process Standards with Security Engineering. Computers and Security, 21(4) (2002), 345--355.]]","journal-title":"Integrating Software Lifecycle Process Standards with Security Engineering. Computers and Security"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.5555\/942807.943910"},{"key":"e_1_3_2_1_21_1","first-page":"55","volume-title":"C.: Using Abuse Case Models for Security Requirements Analysis. In Proceedings of the 15th Computer Security Applications Conference (ACSAC'99)","author":"McDermott J.","year":"1999","unstructured":"McDermott , J. , Fox , C.: Using Abuse Case Models for Security Requirements Analysis. In Proceedings of the 15th Computer Security Applications Conference (ACSAC'99) , Phoenix, AZ USA: IEEE Computer Society Press , 6-10 Dec 1999 , pp. 55 -- 64 .]] McDermott, J., Fox, C.: Using Abuse Case Models for Security Requirements Analysis. In Proceedings of the 15th Computer Security Applications Conference (ACSAC'99), Phoenix, AZ USA: IEEE Computer Society Press, 6-10 Dec 1999, pp. 55--64.]]"},{"key":"e_1_3_2_1_22_1","first-page":"63","volume-title":"G.: Integrating Security and Systems Engineering: Towards the Modelling of Secure Information Systems. In Proceedings of the 15th Conference on Advanced Information Systems Engineering (CAiSE'03)","author":"Mouratidis H.","year":"2003","unstructured":"Mouratidis , H. , Giorgini , P. , Manson , G.: Integrating Security and Systems Engineering: Towards the Modelling of Secure Information Systems. In Proceedings of the 15th Conference on Advanced Information Systems Engineering (CAiSE'03) , Klagenfurt\/Velden Austria : Springer-Verlag, 16-20 Jun 2003 , pp. 63 -- 78 .]] Mouratidis, H., Giorgini, P., Manson, G.: Integrating Security and Systems Engineering: Towards the Modelling of Secure Information Systems. In Proceedings of the 15th Conference on Advanced Information Systems Engineering (CAiSE'03), Klagenfurt\/Velden Austria: Springer-Verlag, 16-20 Jun 2003, pp. 63--78.]]"},{"key":"e_1_3_2_1_23_1","volume-title":"An Introduction to Computer Security: The NIST Handbook. Special Pub SP 800-12","author":"NIST","year":"1995","unstructured":"NIST : An Introduction to Computer Security: The NIST Handbook. Special Pub SP 800-12 , National Institute of Standards and Technology (NIST) , Oct 1995 .]] NIST: An Introduction to Computer Security: The NIST Handbook. Special Pub SP 800-12, National Institute of Standards and Technology (NIST), Oct 1995.]]"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/2.910904"},{"key":"e_1_3_2_1_25_1","volume-title":"Pfleeger","author":"Pfleeger C.P.","year":"2002","unstructured":"Pfleeger , C.P. , Pfleeger , S.L. : Security in Computing. Prentice Hall , 2002 .]] Pfleeger, C.P., Pfleeger, S.L.: Security in Computing. Prentice Hall, 2002.]]"},{"key":"e_1_3_2_1_26_1","volume-title":"Proceedings of the Symposium on Requirements Engineering for Information Security (SREIS)","author":"Rushby J.","year":"2001","unstructured":"Rushby , J. : Security Requirements Specifications: How and What ? In Proceedings of the Symposium on Requirements Engineering for Information Security (SREIS) , Indianapolis, IN USA , 5-6 Mar 2001 .]] Rushby, J.: Security Requirements Specifications: How and What? In Proceedings of the Symposium on Requirements Engineering for Information Security (SREIS), Indianapolis, IN USA, 5-6 Mar 2001.]]"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1109\/TOOLS.2000.891363"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/66093.66095"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1016\/S0167-4048(97)00003-5"}],"event":{"name":"ICSE06: International Conference on Software Engineering","location":"Shanghai China","acronym":"ICSE06","sponsor":["ACM Association for Computing Machinery","SIGSOFT ACM Special Interest Group on Software Engineering"]},"container-title":["Proceedings of the 2006 international workshop on Software engineering for secure systems"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1137627.1137634","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1137627.1137634","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T15:14:29Z","timestamp":1750259669000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1137627.1137634"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2006,5,20]]},"references-count":29,"alternative-id":["10.1145\/1137627.1137634","10.1145\/1137627"],"URL":"https:\/\/doi.org\/10.1145\/1137627.1137634","relation":{},"subject":[],"published":{"date-parts":[[2006,5,20]]},"assertion":[{"value":"2006-05-20","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}