Nancy R. Mead

Nancy R. Mead is a principal researcher with the CERT Program at the Software Engineering Institute (SEI). Mead is also a faculty member in the Master of Software Engineering and Master of Information Systems Management programs at Carnegie Mellon University. She is currently involved in the study of security requirements engineering and the development of software assurance curricula. Mead has more than 150 publications and invited presentations, and has a biographical citation in Who’s Who in America. She is a Fellow of the Institute of Electrical and Electronic Engineers, Inc. (IEEE) and a Distinguished Member of the Association for Computing Machinery (ACM). Dr. Mead received her PhD in mathematics from the Polytechnic Institute of New York, and received a BA and an MS in mathematics from New York University.

Publications

Security and Privacy Requirements Engineering
Nancy R. Mead, Saeed Abu-Nimeh. © 2019. 19 pages.
Security requirements engineering identifies security risks in software in the early stages of the development cycle. In this chapter, the authors present the SQUARE security...
A Method and Case Study for Using Malware Analysis to Improve Security Requirements
Nancy R. Mead, Jose Andre Morales, Gregory Paul Alice. © 2015. 23 pages.
In this paper, the authors propose to enhance current software development lifecycle models by implementing a process for including use cases that are based on previous...
Security and Privacy Requirements Engineering
Nancy R. Mead, Saeed Abu-Nimeh. © 2015. 17 pages.
Security requirements engineering identifies security risks in software in the early stages of the development cycle. In this chapter, the authors present the SQUARE security...
Principles and Measurement Models for Software Assurance
Nancy R. Mead, Dan Shoemaker, Carol Woody. © 2013. 10 pages.
Ensuring and sustaining software product integrity requires that all project stakeholders share a common understanding of the status of the product throughout the development and...
Combining Security and Privacy in Requirements Engineering
Saeed Abu-Nimeh, Nancy R. Mead. © 2012. 18 pages.
Security requirements engineering identifies security risks in software in the early stages of the development cycle. In this chapter, the authors present a security requirements...
Benefits and Challenges in the Use of Case Studies for Security Requirements Engineering Methods
Nancy R. Mead. © 2012. 19 pages.
The premise of this paper is that pilot case studies in security requirements engineering provide both benefits and challenges to the underlying research, education, and...
Development of a Master of Software Assurance Reference Curriculum
Nancy R. Mead, Julia H. Allen, Mark Ardis, Thomas B. Hilburn, Andrew J. Kornecki, Rick Linger, James McDonald. © 2012. 15 pages.
Modern society is deeply and irreversibly dependent on software systems of remarkable scope and complexity in areas that are essential for preserving this way of life. The...
International Journal of Secure Software Engineering (IJSSE)
Martin Gilje Jaatun. Est. 2010.
The International Journal of Secure Software Engineering (IJSSE) publishes original research on the security concerns that construe during the software development practice....
Benefits and Challenges in the Use of Case Studies for Security Requirements Engineering Methods
Nancy R. Mead. © 2010. 18 pages.
The premise of this article is that pilot case studies in security requirements engineering provide both benefits and challenges to the underlying research, education, and...
Development of a Master of Software Assurance Reference Curriculum
Nancy R. Mead, Julia H. Allen, Mark Ardis, Thomas B. Hilburn, Andrew J. Kornecki, Rick Linger, James McDonald. © 2010. 17 pages.
Modern society is deeply and irreversibly dependent on software systems of remarkable scope and complexity in areas that are essential for preserving this way of life. The...
Novel Methods of Incorporating Security Requirements Engineering into Software Engineering Courses and Curricula
Nancy R. Mead, Dan Shoemaker. © 2009. 16 pages.
This chapter describes methods of incorporating security requirements engineering into software engineering courses and curricula. The chapter discusses the importance of...