| 2023 | ICISSP | Privacy-Aware IoT: State-of-the-Art and Challenges. | Shukun Tokas, Gencer Erdogan, Ketil Stlen |
| 2018 | ENASE | Risk-Based Elicitation of Security Requirements According to the ISO 27005 Standard. | Roman Wirtz, Maritta Heisel, Angela Borchert, Rene Meis, Aida Omerovic, Ketil Stlen |
| 2018 | ENASE | Problem-based Elicitation of Security Requirements - The ProCOR Method. | Roman Wirtz, Maritta Heisel, Rene Meis, Aida Omerovic, Ketil Stlen |
| 2016 | EICS | A case-based assessment of the FLUIDE framework for specifying emergency response user interfaces. | Erik G. Nilsson, Ketil Stlen |
| 2016 | ICISSP | Evaluation of the CORAL Approach for Risk-driven Security Testing based on an Industrial Case Study. | Gencer Erdogan, Ketil Stlen, Jan yvind Aagedal |
| 2014 | ISSRE | Schematic Generation of English-Prose Semantics for a Risk Analysis Language Based on UML Interactions. | Gencer Erdogan, Atle Refsdal, Ketil Stlen |
| 2013 | DBSEC | An Approach to Select Cost-Effective Risk Countermeasures. | Le Minh Sang Tran, Bjrnar Solhaug, Ketil Stlen |
| 2012 | HSI | Geographic Visualization of Risk as Decision Support in Emergency Situations. | Aslak Wegner Eide, Ketil Stlen |
| 2012 | SAFECOMP | A Pattern-Based Method for Safe Control Systems Exemplified within Nuclear Power Production. | Andr Alexandersen Hauge, Ketil Stlen |
| 2011 | ESEM | Experiences from Using Indicators to Validate Expert Judgments in Security Risk Analysis. | Olav S. Ligaarden, Atle Refsdal, Ketil Stlen |
| 2011 | ICINCO | Towards Patterns for Handling Safety Critical Adaptive Control Software. | Andr Alexandersen Hauge, Ketil Stlen |
| 2011 | OZCHI | Generic functionality in user interfaces for emergency response. | Erik G. Nilsson, Ketil Stlen |
| 2011 | PLOP | SACS: a pattern language for safe adaptive control software. | Andr Alexandersen Hauge, Ketil Stlen |
| 2008 | ESORICS | Compositional Refinement of Policies in UML - Exemplified for Access Control. | Bjrnar Solhaug, Ketil Stlen |
| 2007 | CRITIS | Using Dependent CORAS Diagrams to Analyse Mutual Dependency. | Gyrd Brndeland, Heidi E. I. Dahl, Iselin Engan, Ketil Stlen |
| 2006 | CCS | Using model-based security analysis in component-oriented system development. | Gyrd Brndeland, Ketil Stlen |
| 2006 | FM | A Fully General Operational Semantics for UML 2.0 Sequence Diagrams with Potential and Mandatory Choice. | Mass Soldal Lund, Ketil Stlen |
| 2006 | ICSE | Deriving Tests from UML 2.0 Sequence Diagrams with neg and assert. | Mass Soldal Lund, Ketil Stlen |
| 2006 | MODELS | A Graphical Approach to Risk Identification, Motivated by Empirical Investigations. | Ida Hogganvik, Ketil Stlen |
| 2006 | SACMAT | Information flow property preserving transformation of UML interaction diagrams. | Fredrik Seehusen, Ketil Stlen |
| 2002 | EDOC | Model-Based Risk Assessment to Improve Enterprise Security. | Jan yvind Aagedal, Folker den Braber, Theodosis Dimitrakos, Bjrn Axel Gran, Dimitris Raptis, Ketil Stlen |
| 2002 | SAFECOMP | The CORAS Framework for a Model-Based Risk Management Process. | Rune Fredriksen, Monica Kristiansen, Bjrn Axel Gran, Ketil Stlen, Tom Arthur Opperud, Theodosis Dimitrakos |
| 1996 | ESOP | Assumption/Commitment Rules for Dataflow Networks - With an Emphasis on Completeness. | Ketil Stlen |
| 1995 | MPC | A Refinement Relation Supporting the Transition from Unbounded to Bounded Communication Buffers. | Ketil Stlen |
| 1994 | FORTE | An attempt to embed a restricted version of SDL as a target language in Focus. | Eckhardt Holz, Ketil Stlen |
| 1992 | FORTE | Shared-state design modulo weak and strong process fairness. | Ketil Stlen |
| 1991 | CONCUR | A Method for the Development of Totally Correct Shared-State Parallel Programs. | Ketil Stlen |
| 1991 | FM | An Attempt to Reason about Shared-State Concurrency in the Style of VDM. | Ketil Stlen |