Skip to main content

Showing 1–3 of 3 results for author: Mbaka, W

  1. arXiv:2310.04097  [pdf, other

    cs.CY

    Impact of Gender on the Evaluation of Security Decisions

    Authors: Winnie Mbaka, Katja Tuma

    Abstract: Security decisions are made by human analysts under uncertain conditions which leaves room for bias judgement. However, little is known about how demographics like gender and education impact these judgments. We conducted an empirical study to investigate their influence on security decision evaluations, addressing this knowledge gap.

    Submitted 6 October, 2023; originally announced October 2023.

  2. arXiv:2208.01524  [pdf, other

    cs.CR cs.SE

    A replication of a controlled experiment with two STRIDE variants

    Authors: Winnie Mbaka, Katja Tuma

    Abstract: To avoid costly security patching after software deployment, security-by-design techniques (e.g., STRIDE threat analysis) are adopted in organizations to root out security issues before the system is ever implemented. Despite the global gap in cybersecurity workforce and the high manual effort required for performing threat analysis, organizations are ramping up threat analysis activities. However… ▽ More

    Submitted 2 August, 2022; originally announced August 2022.

  3. arXiv:2208.01512  [pdf, ps, other

    cs.SE

    Human Aspect of Threat Analysis: A Replication

    Authors: Katja Tuma, Winnie Mbaka

    Abstract: Background: Organizations are experiencing an increasing demand for security-by-design activities (e.g., STRIDE analyses) which require a high manual effort. This situation is worsened by the current lack of diverse (and sufficient) security workforce and inconclusive results from past studies. To date, the deciding human factors (e.g., diversity dimensions) that play a role in threat analysis hav… ▽ More

    Submitted 2 August, 2022; originally announced August 2022.