Putting Security Engineering Methodologies to Work

NESSOS is a network of excellence which aims at constituting and integrating a long lasting research community on engineering secure software-based services and systems.

NESSOS launches annually a challenge where designers of security
engineering methodologies present their methods to graduate students
and industry practitioners to see which methods do actually works best in practice.
The goal of the challenge is to  investigate the actual effectiveness of the methods, and  to gain deep understanding of why some methods work and some don't. During the challenge the participants are first instructed about a specific security requirements and risk analysis method from academia. Then, the participants, divided in groups, have to mimic a real team of security practitioners who analyze the security risks of a real industrial case study using one of the security requirements methods under evaluation.
Check here the video from the ERISE 2012 event: