Social influences on secure development tool adoption: why security tools spread

S Xiao, J Witschey, E Murphy-Hill - … of the 17th ACM conference on …, 2014 - dl.acm.org
S Xiao, J Witschey, E Murphy-Hill
Proceedings of the 17th ACM conference on Computer supported cooperative …, 2014dl.acm.org
Security tools can help developers build more secure software systems by helping
developers detect or fix security vulnerabilities in source code. However, developers do not
always use these tools. In this paper, we investigate a number of social factors that impact
developers' adoption decisions, based on a multidisciplinary field of research called
diffusion of innovations. We conducted 42 one-on-one interviews with professional software
developers, and our results suggest a number of ways in which security tool adoption …
Security tools can help developers build more secure software systems by helping developers detect or fix security vulnerabilities in source code. However, developers do not always use these tools. In this paper, we investigate a number of social factors that impact developers' adoption decisions, based on a multidisciplinary field of research called diffusion of innovations. We conducted 42 one-on-one interviews with professional software developers, and our results suggest a number of ways in which security tool adoption depends on developers' social environments and on the channels through which information about tools is communicated. For example, some participants trusted developers with strong reputations on the Internet as much as they trust their colleagues for information about security tools.
ACM Digital Library