Abstract
Security engineering—from creating security requirements to the implementation of security features, such as cryptography or authentification—is often supported by domain-specific languages (DSLs). While many security DSLs have been presented, a lack of overview and empirical data about these DSLs, such as which security aspects are addressed and when, hinders their effective use and further research. This systematic literature review examines 120 security DSLs regarding their security aspects and goals addressed, their language-specific characteristics, their integration into the software development lifecycle, and their evaluation. We observe a focus on individual development phases and a high degree of fragmentation, which leads to opportunities for integration. The research community also needs to improve the usability and evaluation of security DSLs.
| Original language | English |
|---|---|
| Journal | ACM Computing Surveys |
| Volume | 58 |
| Issue number | 11 |
| Number of pages | 36 |
| ISSN | 0360-0300 |
| DOIs | |
| Publication status | Published - 13 Apr 2026 |
Keywords
- Domain specific languages
- security
- survey
Fingerprint
Dive into the research topics of '120 Domain-Specific Languages for Security'. Together they form a unique fingerprint.Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver