{"id":"W2111937777","doi":"10.1109/isa.2008.104","title":"Catalog of Metrics for Assessing Security Risks of Software throughout the Software Development Life Cycle","year":2008,"lang":"en","type":"article","venue":"","topic":"Software Engineering Research","field":"Computer Science","cited_by":27,"is_retracted":false,"has_abstract":true,"ca_institutions":"Concordia University","funders":"","keywords":"Systems development life cycle; Software security assurance; Computer science; Software development process; Software development; Software peer review; Software engineering; Software metric; Security testing; Security engineering; Security bug; Computer security; Security information and event management; Risk analysis (engineering); Software construction; Software; Security service; Information security; Cloud computing security; Business","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"codex-gemma-dda1882f352a","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.0007894218,0.0001631194,0.0002984285,0.0002029269,0.0002318577,0.00004923653,0.001365852,0.00009120953,0.00000803047],"category_scores_gemma":[0.005951491,0.00011944,0.0001075407,0.001103071,0.0001343863,0.0004019394,0.0005343292,0.0001912231,0.000005754796],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.00007802407,"about_ca_system_score_gemma":0.0006763946,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.0001498528,"about_ca_topic_score_gemma":0.000009183201,"domain_scores_codex":[0.9980699,0.00004801355,0.0004454071,0.0003340856,0.0007178087,0.0003848093],"domain_scores_gemma":[0.9951548,0.003371413,0.0001547365,0.000743653,0.0004646514,0.0001107264],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"observational","study_design_gemma":"observational","study_design_scores_codex":[0.00004046121,0.001015386,0.8036233,0.001644593,0.0005409677,0.00003407664,0.0236279,0.01328039,0.0002888413,0.005314934,0.01152074,0.1390685],"study_design_scores_gemma":[0.002326305,0.0003006102,0.8341901,0.0001998706,0.0000439051,0.00008229548,0.000404025,0.04431634,0.1060563,0.004547449,0.006264784,0.001268041],"study_design_candidate":"observational","study_design_consensus":"observational","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.1974566,0.0003569655,0.801419,0.00006755127,0.0001689104,0.0002762072,0.000009226882,0.0002199618,0.00002555691],"genre_scores_gemma":[0.6229305,0.00001229713,0.3769279,0.00003695965,0.00002110702,0.00002757651,0.000005198899,0.00001280985,0.00002566044],"genre_candidate":"methods","genre_consensus":null,"teacher_disagreement_score":0.4254739,"threshold_uncertainty_score":0.712492,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.09007437702113673,"score_gpt":0.3567248719603391,"score_spread":0.2666504949392024,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}