A systematic literature review of security and privacy by design principles, norms, and strategies for digital technologies

Cristina Del‐Real et al.

International Review of Law, Computers and Technology2025https://doi.org/10.1080/13600869.2025.2457227article
ABDC A
Weight
0.50

Abstract

This paper offers a comparative systematic literature review of the key principles, norms, and strategies associated with Security by Design (SbD) and Privacy by Design (PbD). Both frameworks are grounded in the idea that security and privacy should be integral components of digital technologies from the very beginning of the design process. Following PRISMA guidelines, we reviewed 82 documents sourced from databases such as the ACM Digital Library, EBSCO Library, IEEE Xplore, ProQuest, Scopus, and Web of Science. Our analysis reveals that SbD and PbD share four fundamental principles: prevention/proactiveness, embeddedness, user-centricity, and transparency. The review also highlights the solid regulatory foundation of PbD, particularly under the General Data Protection Regulation (GDPR), compared to the emerging regulatory context for SbD. Additionally, we explore a range of strategies, from organizational cultural changes to technical interventions, that illustrate the nuanced approaches taken to implement these paradigms. We conclude by discussing the broader implications of these findings and suggesting directions for future research, aiming to contribute to the development of technologies that are both secure and respectful of privacy, while also advocating for integrated frameworks that enhance digital trust.

6 citations

Open via your library →

Cite this paper

https://doi.org/https://doi.org/10.1080/13600869.2025.2457227

Or copy a formatted citation

@article{cristina2025,
  title        = {{A systematic literature review of security and privacy by design principles, norms, and strategies for digital technologies}},
  author       = {Cristina Del‐Real et al.},
  journal      = {International Review of Law, Computers and Technology},
  year         = {2025},
  doi          = {https://doi.org/https://doi.org/10.1080/13600869.2025.2457227},
}

Paste directly into BibTeX, Zotero, or your reference manager.

Flag this paper

A systematic literature review of security and privacy by design principles, norms, and strategies for digital technologies

Flags are reviewed by the Arbiter methodology team within 5 business days.


Evidence weight

0.50

Balanced mode · F 0.40 / M 0.15 / V 0.05 / R 0.40

F · citation impact0.44 × 0.4 = 0.18
M · momentum0.65 × 0.15 = 0.10
V · venue signal0.50 × 0.05 = 0.03
R · text relevance †0.50 × 0.4 = 0.20

† Text relevance is estimated at 0.50 on the detail page — for your query’s actual relevance score, open this paper from a search result.