James C. DavisView profile
Assistant Professor
James C. Davis is an Assistant Professor in the Elmore Family School of Electrical and Computer Engineering at Purdue University. He leads the Duality Lab, which focuses on the engineering of software-intensive computing systems with particular interest in how these systems fail and how those failures can be mitigated. His research takes a socio-technical approach, considering both human and technical perspectives in system engineering. Dr. Davis received his PhD in Computer Science from Virginia Tech, where he was advised by Dongyoon Lee. His research interests span empirical software engineering, security, safety, testing, and web technologies, with a strong emphasis on practical impact and measurement. He applies a socio-technical philosophy to his work, believing high-quality systems must be engineered considering both human and technical perspectives. His recent research focuses on software supply chain security, regular expression vulnerabilities (particularly ReDoS), pre-trained model security, and failure analysis in software systems. His work often involves empirical studies of real-world software systems and security practices, with a strong emphasis on practical impact and measurable results. Dr. Davis has received significant funding from the National Science Foundation, Google, Cisco, and Rolls Royce for his research. His publications appear in top-tier venues including ICSE, FSE, ASE, and USENIX Security. He has served on program committees for many major software engineering and security conferences. Among his notable achievements are being elevated to IEEE Senior Member in 2022, receiving the Ruth and Joel Spira Outstanding Teacher Award from ECE@Purdue in 2022, and multiple Best Paper and Best Poster awards. He has successfully mentored numerous PhD and Master's students, with several completing their theses on topics related to software security and engineering. Dr. Davis actively recruits graduate and undergraduate research assistants for his Duality Lab, which has produced influential work on software failure analysis, regular expression security, and machine learning supply chain security. His lab is supported by multiple federal and industry grants focused on improving the security and reliability of software systems.














