Developing and implementing social engineering-prevention policies: a qualitative study

被引:0
|
作者
Steinmetz, Kevin F. [1 ]
Holt, Thomas J. [2 ]
Brewer, Christopher G. [3 ]
机构
[1] Kansas State Univ, Dept Sociol Anthropol & Social Work, Manhattan, KS 66506 USA
[2] Michigan State Univ, Sch Criminal Justice, E Lansing, MI USA
[3] Illinois State Univ, Dept Criminal Justice Sci, Normal, IL USA
基金
美国国家科学基金会;
关键词
Social engineering; Information security policy; Qualitative methods; Cybercrime; Policy development; INFORMATION SECURITY; TECHNOLOGY; MANAGEMENT; PERCEPTIONS; GOVERNANCE; BUSINESS; MODEL; STATE;
D O I
10.1057/s41284-023-00385-2
中图分类号
DF [法律]; D9 [法律];
学科分类号
0301 ;
摘要
Social engineering, or the use of deception to circumvent information security measures, has become a significant concern for organizations. Many organizations have implemented information security policies to mitigate the risks posed by social engineering attacks. This study uses a grounded theory-based approach to examine qualitative interviews with security auditors, IT security professionals, and social engineers (n = 54) to thematically catalog their insights on developing and supporting security policies. Results indicate that effective IT security policies are (1) properly communicated, (2) tested to find gaps in policy directives and their implementation, (3) buttressed by tools to facilitate good security decision-making among members, (4) written simply and concisely while being kept up-to-date, (5) supported through adequate staffing and expertise, (6) supported by organizational leadership, and (7) accompanied by an organizational structure which allows for policy to be overseen and implemented consistently.
引用
收藏
页码:599 / 617
页数:19
相关论文
共 50 条
  • [21] Implementing Ethics Policies in Developing Countries: Ploughing On Parched Ground?
    Mazonde, Isaac N.
    Jackson-Malete, Jose
    Sugarman, Jeremy
    JOURNAL OF RESEARCH ADMINISTRATION, 2007, 38 : 193 - 202
  • [22] Challenges to Developing and Implementing Policies for Adolescent Online Portal Access
    Sisk, Bryan A.
    Antes, Alison L.
    Bereitschaft, Christine
    Enloe, Madi
    Bourgeois, Fabienne
    DuBois, James
    PEDIATRICS, 2023, 151 (06)
  • [23] Faculty Experiences Developing and Implementing Policies for Exit Exam Testing
    Stonecypher, Karen
    Young, Anne
    Langford, Rae
    Symes, Lene
    Willson, Pamela
    NURSE EDUCATOR, 2015, 40 (04) : 189 - 193
  • [24] Falling for Social Engineering: A Qualitative Analysis of Social Engineering Policy Recommendations
    Steinmetz, Kevin F.
    Holt, Thomas J.
    SOCIAL SCIENCE COMPUTER REVIEW, 2023, 41 (02) : 592 - 607
  • [25] Facilitators and barriers in the development and implementation of depression prevention and treatment policies in China: a qualitative study
    Jinping Ma
    Hai Zhou
    Qinqin Fu
    Guohua Lu
    BMC Public Health, 23
  • [26] Facilitators and barriers in the development and implementation of depression prevention and treatment policies in China: a qualitative study
    Ma, Jinping
    Zhou, Hai
    Fu, Qinqin
    Lu, Guohua
    BMC PUBLIC HEALTH, 2023, 23 (01)
  • [27] A qualitative approach to study social perceptions and public policies in dehesa agroforestry systems
    Gaspar, P.
    Escribano, M.
    Mesias, F. J.
    LAND USE POLICY, 2016, 58 : 427 - 436
  • [28] Perspectives and challenges in developing and implementing integrated dengue surveillance tools and technology in Thailand: a qualitative study
    Rotejanaprasert, Chawarat
    Armatrmontree, Peerawich
    Chienwichai, Peerut
    Maude, Richard J.
    PLOS NEGLECTED TROPICAL DISEASES, 2024, 18 (08):
  • [29] A Qualitative Study of School Social Workers' Roles and Challenges in Dropout Prevention
    Webber, Kristina C.
    CHILDREN & SCHOOLS, 2018, 40 (02) : 82 - +
  • [30] Barriers and facilitators to implementing cancer prevention clinical decision support in primary care: a qualitative study
    Melissa L. Harry
    Anjali R. Truitt
    Daniel M. Saman
    Hillary A. Henzler-Buckingham
    Clayton I. Allen
    Kayla M. Walton
    Heidi L. Ekstrom
    Patrick J. O’Connor
    JoAnn M. Sperl-Hillen
    Joseph A. Bianco
    Thomas E. Elliott
    BMC Health Services Research, 19