Conference Description
Key Takeaways
- Academic conference dedicated to research in data and application security and privacy
- Organized by ACM SIGSAC and hosted at Colorado State University in Fort Collins, Colorado
- Addresses the tradeoffs between security, privacy, functionality, cost and usability in practical systems
- Designed for academic researchers, security professionals, software engineers and students
- Includes calls for papers and posters alongside traditional conference presentations
About the Conference
The ACM Conference on Data and Application Security and Privacy (CODASPY) 2027 is an annual academic conference organized by ACM SIGSAC. The event focuses specifically on security and privacy concerns at the data and application layers, distinguishing it from broader cybersecurity conferences that may emphasize network or infrastructure security.
CODASPY 2027 will be held in person at Colorado State University in Fort Collins, Colorado, USA. The conference format includes research paper presentations, poster sessions and networking opportunities typical of academic gatherings in the field.
Research Focus and Key Topics
The conference addresses the increasing dependence on cyber infrastructure driven by the proliferation of the Internet and smart devices. As this dependence grows, so do security threats from malicious actors targeting data and applications.
Core subject areas include:
- Data security and protection against unauthorized access
- Application security throughout the software lifecycle
- Privacy preservation and compliance
- Cyber infrastructure protection
- Policy and compliance issues related to security and privacy
A central theme of CODASPY is examining the tradeoffs between security, privacy, functionality, cost and usability in practical systems. The conference emphasizes addressing these concerns throughout the entire lifecycle of applications and systems rather than treating security as an afterthought.
Who Should Attend
CODASPY serves a primarily academic and research-oriented audience. The conference is designed for security researchers, university professors, PhD students, application security engineers, data privacy officers and IT security managers. Attendees typically come from universities, research institutions, technology companies and organizations with significant cybersecurity concerns.
The event provides a venue for sharing research findings, discussing emerging challenges in data and application security, and building connections within the academic cybersecurity community. Those working on technical, operational or strategic security problems related to protecting information and applications will find relevant content and collaboration opportunities.

