ICCK

Nadiminti Sai Priya Satwika

Pragati Engineering College(A),Surampalem, India

Section 01

Academic Profile

No academic profile information available at the moment.

Section 02

Editorial Roles

This user currently does not serve as an editor for any ICCK journals.

Section 03

ICCK Publications

Open Access | Research Article | 12 May 2026
A Quantitative Framework for Return-on-Security-Investment (RoSI) in Secure Software Engineering: Integrating Probabilistic Risk, Lifecycle Dynamics, and Data-Driven Adaptation
ICCK Journal of Software Engineering | Volume 2, Issue 2: 121-137, 2026 | DOI: 10.62762/JSE.2026.472228
Abstract
The concept of Return on Security Investment (RoSI) has evolved from a mere financial indicator into a comprehensive system for informed decision-making. Software-intensive organisations face mounting pressure to justify security expenditure in financially rigorous terms. Existing Return-on-Security-Investment (RoSI) models rely on deterministic approximations that ignore probability distributions over threats, temporal decay of vulnerability windows, and intangible cost categories. This paper presents a probabilistic RoSI framework grounded in the FAIR taxonomy that integrates: (i) expected-loss differentials with Bayesian updating; (ii) shift-left cost amplification across the software dev... More >

Graphical Abstract
A Quantitative Framework for Return-on-Security-Investment (RoSI) in Secure Software Engineering: Integrating Probabilistic Risk, Lifecycle Dynamics, and Data-Driven Adaptation