EvoSec 2025W Lecture 13

From Soma-notes
Revision as of 15:28, 27 February 2025 by Soma (talk | contribs) (Created page with "==Readings== * [https://homeostasis.scs.carleton.ca/~soma/pubs/somayaji-cset2009.pdf Somayaji, "Evaluating Security Products with Clinical Trials." (CSET 2009)] ==Discussion Questions== * What is the relationship between trust in medical interventions and clinical trials versus lab experiments? * What is the relationship between trust in security interventions and lab experiments currently? * For a security trial to be valid, would the product being tested be allowed...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

Readings

Discussion Questions

  • What is the relationship between trust in medical interventions and clinical trials versus lab experiments?
  • What is the relationship between trust in security interventions and lab experiments currently?
  • For a security trial to be valid, would the product being tested be allowed to have any updates? Or, would the updates themselves be part of the trial?
  • Why do we trust that security technologies actually improve end user or organizational security? Is that trust earned or deserved?

Notes