Redirigiendo al acceso original de articulo en 16 segundos...
ARTÍCULO
TITULO

Deriving Cyber Security Risks from Human and Organizational Factors ? A Socio-technical Approach

Thomas Richard McEvoy    
Stewart James Kowalski    

Resumen

Cyber security risks are socio-technical in nature. They result not just from technical vulnerabilities but also, more fundamentally, from the degradation of working practices over time ? which move an organization across the boundary of secure practice to a place where attacks will not only succeed, but also have a significantly greater impact on the organization. Yet current risk analysis and management methodologies are not designed to detect these kinds of systemic risks. We present an approach, devised in the field, to deriving these risks ? using a qualitative research methodology, akin to grounded theory, but based on preset coding descriptors. This allows organizational and individual behavior identified during interviews, observations or document research to be thematically analyzed, collated and mapped to potential risks, linked to poor working practices. The resulting risk factors can be linked together forming ?risk narratives?, showing how the degradation of working practices in one part of the organization can contribute to undermining its ability to respond to cyber security threats in another part of the organization.

 Artículos similares

       
 
Bilgin Metin, Sefa Duran, Eda Telli, Meltem Mutlutürk and Martin Wynn    
In today?s technology-centric business environment, where organizations encounter numerous cyber threats, effective IT risk management is crucial. An objective risk assessment?based on information relating to business requirements, human elements, and th... ver más
Revista: Information

 
Samreen Mahmood, Mehmood Chadhar and Selena Firmin    
Purpose: The purpose of this research paper was to analyse the counterstrategies to mitigate cybersecurity challenges using organisational learning loops amidst major crises in the Higher Education and Research Sector (HERS). The authors proposed the lea... ver más
Revista: Information

 
Jiabao Li, Lichi An, Yabing Cheng and Haoxiang Wang    
To improve the noise comfort of the whole machine, it is necessary to establish the sound quality prediction model of the Hy-Vo chain transmission system. Compared with the silent chain transmission system, the Hy-Vo chain transmission system normally op... ver más
Revista: Applied Sciences

 
Hangwen Zhang, Bochen Li, Boyang Li and Cheng Yang    
A numerical method is used to evaluate the influence of propeller parameters on the aerodynamic performance of shrouded coaxial dual rotors in hover. Compared with the open-rotor configuration, the shrouded rotors reduce the tip vortex, resulting in a hi... ver más
Revista: Aerospace

 
Mai Xin, Zhifeng Ye, Tong Zhang and Xiong Pan    
After many years of development, the technology of analyzing the working condition of power units based on vibration signals has received relatively stable applications, but the accuracy and the degree of automation and intelligence for fault diagnosis a... ver más
Revista: Aerospace