Assessing Team Security Maturity in Large-Scale Agile Development

dc.contributor.authorNägele, Sascha
dc.contributor.authorWatzelt, Jan-Philipp
dc.contributor.authorMatthes, Florian
dc.date.accessioned2023-12-26T18:53:12Z
dc.date.available2023-12-26T18:53:12Z
dc.date.issued2024-01-03
dc.identifier.doi10.24251/HICSS.2024.871
dc.identifier.isbn978-0-9981331-7-1
dc.identifier.othere68b9ccd-7440-43d7-a956-e700ed197403
dc.identifier.urihttps://hdl.handle.net/10125/107257
dc.language.isoeng
dc.relation.ispartofProceedings of the 57th Hawaii International Conference on System Sciences
dc.rightsAttribution-NonCommercial-NoDerivatives 4.0 International
dc.rights.urihttps://creativecommons.org/licenses/by-nc-nd/4.0/
dc.subjectAgile and Lean: Organizations, Products and Development
dc.subjectcompliance
dc.subjectgovernance
dc.subjectlarge-scale agile development
dc.subjectsecurity
dc.subjectteam maturity
dc.titleAssessing Team Security Maturity in Large-Scale Agile Development
dc.typeConference Paper
dc.type.dcmiText
dcterms.abstractOrganizations struggle to balance agile team autonomy and strict security governance in large-scale agile development environments. In particular, conventional top-down IT governance mechanisms often conflict with the desired autonomy of decentralized agile teams. Our research presents a novel approach to resolve the tension between security governance and development agility: a criteria-based security maturity assessment that enables greater autonomy for mature agile teams. Leveraging design science research, a literature review, and an interview study, we introduce two key contributions: a criteria catalog for evaluating a team's capabilities and a team security maturity model. Our expert evaluation confirms their value for systematically assessing the teams' capabilities to deliver secure and compliant applications, allowing organizations to grant more autonomy to mature teams and prioritize supporting lower-maturity teams. Future work could go beyond expert interviews and implement and evaluate the team security maturity model through a case study or experiments.
dcterms.extent10 pages
prism.startingpage7259

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
0709.pdf
Size:
245.56 KB
Format:
Adobe Portable Document Format