The Future of Software Security: Beyond the Security Silo to All of Us
Abstract: The US National Vulnerability Database indicates an ever-upward trend in reported vulnerabilities. Attackers only get more motivated, more aggressive, and more intelligent. The 2022 Verizon Data Breach report summarized the most recent trend, “… the financially motivated criminals and nefarious nation-state actors have rarely, if ever, come out swinging the way they did over the last 12 months.” The attackers are expanding their paths into software systems (a.k.a. their attack vectors) and searching for the weakest links in systems, which is often the system user. Detecting and responding to vulnerabilities is the least efficient and most reactive way to deal with security. Proactively designing and building security into software systems, languages, and frameworks is more efficient and effective, involving all software engineering. In this talk, I will summarize trends in software security research in software engineering venues over the past three years and identify opportunities for expanding software security research in software engineering.
Bio: Laurie Williams is a Distinguished University Professor in the Computer Science Department of the College of Engineering at North Carolina State University (NCSU). Laurie is a co-director of the NCSU Science of Security Lablet. She is also the Chief Cybersecurity Technologist of the SecureAmerica Institute. Her research focuses on software security; agile software development practices and processes, including continuous deployment; and software reliability, software testing and analysis. Laurie is an NSF CAREER award winner, an ACM Distinguished Scientist, and an IEEE Fellow.
Thu 18 MayDisplayed time zone: Hobart change
11:00 - 12:30 | FOSE-Testing, Security, AI and ProductivityFoSE - Future of Software Engineering at Meeting Room 110 Chair(s): Hoa Khanh Dam University of Wollongong | ||
11:00 10mTalk | The Future of Software Testing FoSE - Future of Software Engineering Aldeida Aleti Monash University | ||
11:10 10mTalk | The Future of Software Security: Beyond the Security Silo to All of Us FoSE - Future of Software Engineering Laurie Williams North Carolina State University | ||
11:20 10mTalk | Enabling Flow in Software Development FoSE - Future of Software Engineering Gail Murphy University of British Columbia | ||
11:30 10mTalk | How is the rapid progress in Artificial Intelligence affecting the future of Software Engineering? FoSE - Future of Software Engineering Lionel Briand University of Luxembourg; University of Ottawa | ||
11:40 50mPanel | Panel discussion FoSE - Future of Software Engineering |