7th International Workshop on SECurity and Privacy Requirements Engineering

In conjunction with ESORICS 2023

Thursday 28 September 2023

The Hague, The Netherlands


Software engineering is an essential aspect for obtaining a systematic, disciplined and quantifiable approach to the development, operation, and maintenance of software and services. Incorporating security and privacy during the engineering process is of vital importance for assuring the development of reliable, correct, robust and trustful systems as well as adaptive, usable and evolving software services that satisfy users’ requirements.

For many years software engineers were focused in the development of new software thus considering security and privacy mainly during the development stage as an ad-hoc process rather than an integrated one initiated in the system design stage. However, the data protection regulations, the complexity of modern environments such as IoT, IoE, Cloud Computing, Big Data, Cyber Physical Systems etc. and the increased level of users’ awareness in IT have forced software engineers to identify security and privacy as fundamental design aspects leading to the implementation of more trusted software systems and services. Researchers have addressed the necessity and importance of implementing design methods for security and privacy requirements elicitation, modeling and implementation the last decades. Today Security by Design (SbD) and Privacy by Design (PbD) are established research areas that focus on these directions. 


Methods, tools and techniques for the elicitation, analysis and modeling of security and privacy requirements
Security and Privacy testing methods and tools
Adaptive Security and Privacy related methods and tools
Methods and tools for designing usable secure and privacy-aware systems
Methods and tools for the coordination of legal requirements along with Security and Privacy requirements
Security and Privacy requirements verification
Integration of functional, security and privacy requirements
Security and Privacy by design issues
SbD and PbD legal and regulatory issues


General Chairs

Prof. Annie Antón

Georgia Institute of Technology

Prof. Stefanos Gritzalis

University of Piraeus

Program Committee Chairs

Prof. John Mylopoulos

University of Ottawa

Prof. Christos Kalloniatis

University of the Aegean

Program Committee Members

Travis Breaux, Carnegie Mellon University, USA
Sabrina De Capitani di Vimercati, Università degli Studi di Milano, Italy
Vasiliki Diamantopoulou, University of the Aegean, Greece
Carmen Fernandez-Gago, Univeristy of Malaga, Spain
Eduardo Fernandez-Medina, University of Castilla-La Mancha, Spain
Marita Heisel, University of Duisburg-Essen, Germany
Jan Jürjens, University of Koblenz-Landau, Germany
Maria Karyda, University of the Aegean, Greece
Costas Lambrinoudakis, University of Piraeus, Greece
Tong Li, Beijing University of Technology, China
Haris Mouratidis, University of Essex, UK
Liliana Pasquale, University College Dublin, Ireland
Michalis Pavlidis, University of Brighton, UK
David Garcia Rosado, University of Castilla-La Manca, Spain
Pierangela Samarati, Università degli Studi di Milano, Italy
Aggeliki Tsohou, Ionian University, Greece
Nicola Zannone, Eindhoven University of Technology, The Netherlands

Paper Submission

Submission Guidelines

Submitted papers must not substantially overlap with papers that have been published or that are simultaneously submitted to a journal or a conference/workshop with proceedings. The workshop proceedings will be published by Springer in the Lecture Notes in Computer Science (LNCS) series.

All submissions should follow the LNCS template from the time they are submitted. Submitted papers can be either full papers or short papers. Full papers should be at most 20 pages while short papers should be at most 8 pages including the bibliography in both cases. All submissions must be written in English. Submissions are to be made to the Submission web site. Only pdf files will be accepted.

Submissions not meeting these guidelines risk rejection without consideration of their merits. Authors of accepted papers must guarantee that their papers will be presented at the conference.

Extended versions of high quality accepted papers will be given fast track opportunity to be published in Information and Computer Security journal.

Important Dates

Submission deadline

July 3, 2023July 15, 2023

Notification to authors

July 30, 2023

Camera-ready versions

September 18, 2023

List of Accepted Papers

  1. Jens Leicht, Marvin Wagner and Maritta Heisel, Creating Privacy Policies From Data-Flow Diagrams download

  2. Mario Raciti and Giampaolo Bella, Up-to-date Threat Modelling for Soft Privacy on Smart Cars download

  3. Cihan Eryonucu and Panos Papadimitratos, Security and Privacy for Mobile Crowdsensing: Improving Modularity and User Relevance download

  4. Stavros Simou, Aikaterini-Georgia Mavroeidi and Christos Kalloniatis, Review on privacy and trust methodologies in cloud computing download

Contact us

For further inquiries, please contact the program committee chairs at:

secpre2023 [at] easychair [dot] org