Skip to main navigation Skip to search Skip to main content

120 Domain-Specific Languages for Security

  • Markus Krausz
  • , Sven Peldszus
  • , Thorsten Berger
  • , Francesco Regazzoni
  • , Tim Güneysu
  • Ruhr University Bochum
  • TÜV Informationstechnik GmbH
  • Chalmers university of Gothenburg
  • University of Amsterdam
  • Università della Svizzera italiana
  • German Research Center for Artificial Intelligence

Research output: Journal Article or Conference Article in JournalJournal articleResearchpeer-review

Abstract

Security engineering—from creating security requirements to the implementation of security features, such as cryptography or authentification—is often supported by domain-specific languages (DSLs). While many security DSLs have been presented, a lack of overview and empirical data about these DSLs, such as which security aspects are addressed and when, hinders their effective use and further research. This systematic literature review examines 120 security DSLs regarding their security aspects and goals addressed, their language-specific characteristics, their integration into the software development lifecycle, and their evaluation. We observe a focus on individual development phases and a high degree of fragmentation, which leads to opportunities for integration. The research community also needs to improve the usability and evaluation of security DSLs.
Original languageEnglish
JournalACM Computing Surveys
Volume58
Issue number11
Number of pages36
ISSN0360-0300
DOIs
Publication statusPublished - 13 Apr 2026

Keywords

  • Domain specific languages
  • security
  • survey

Fingerprint

Dive into the research topics of '120 Domain-Specific Languages for Security'. Together they form a unique fingerprint.

Cite this