A Socio-Technical Approach to Information Security

被引:0
|
作者
Mujinga, Mathias [1 ]
Eloff, Mariki M. [2 ]
Kroeze, Jan H. [1 ]
机构
[1] Univ South Africa, Sch Comp, Pretoria, South Africa
[2] Univ South Africa, CEMS, ICC, Pretoria, South Africa
来源
关键词
Socio-technical approach; information security; social theory; STInfoSec;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The main objective of this paper is to present a preliminary socio-technical information security (STInfoSec) framework for the development of online information security applications that addresses both social and technical aspects of information security design. The paper looks at theoretical aspects related to a view of information security as a socio-technical system in the context of online banking. The STInfoSec framework investigates usability and security requirements for an improved online banking system that seeks to improve the adoption and continued use of the service. The STInfoSec framework proposes 12 usable security design principles that assist in addressing security and usability requirements in online applications such as online banking. The framework seeks to influence the behaviour of designers of online information security applications by incorporating principles that consider the end user behaviour of such applications. The validation of the framework is beyond the scope of this paper.
引用
收藏
页数:10
相关论文
共 50 条
  • [21] Special issue on socio-technical aspects in security - editorial
    Gross, Thomas
    Vigano, Luca
    [J]. JOURNAL OF COMPUTER SECURITY, 2022, 30 (03) : 325 - 326
  • [22] Preserving compliance with security requirements in socio-technical systems
    Salnitri, Mattia
    Paja, Elda
    Giorgini, Paolo
    [J]. Communications in Computer and Information Science, 2014, 470 : 49 - 61
  • [23] Modelling the Enemies of an IT Security System - A Socio-Technical System Security Model
    Kowalski, Stewart
    Mwakalinga, Jeffy
    [J]. IMCIC'11: THE 2ND INTERNATIONAL MULTI-CONFERENCE ON COMPLEXITY, INFORMATICS AND CYBERNETICS, VOL I, 2011, : 251 - 256
  • [24] The New Stream of Socio-Technical Approach and Main Stream Information Systems Research
    Ghaffarian, Vafa
    [J]. WORLD CONFERENCE ON INFORMATION TECHNOLOGY (WCIT-2010), 2011, 3
  • [25] GIS and organisations and people: a socio-technical approach
    Longley, P
    [J]. ENVIRONMENT AND PLANNING B-PLANNING & DESIGN, 1999, 26 (05): : 785 - 786
  • [26] Dark Patterns: Towards a Socio-technical Approach
    Baroni, Luiz Adolpho
    Puska, Alisson Andrey
    de Castro Salgado, Luciana Cardoso
    Pereira, Roberto
    [J]. PROCEEDINGS OF THE 20TH BRAZILIAN SYMPOSIUM ON HUMAN FACTORS IN COMPUTING SYSTEMS (IHC 2021), 2021,
  • [27] A socio-technical approach to business process simulation
    Gregoriades, Andreas
    Sutcliffe, Alistair
    [J]. DECISION SUPPORT SYSTEMS, 2008, 45 (04) : 1017 - 1030
  • [28] Engineering for Humanitarian Development A Socio-Technical Approach
    Amadei, Bernard
    Wallace, William A.
    [J]. IEEE TECHNOLOGY AND SOCIETY MAGAZINE, 2009, 28 (04) : 6 - 15
  • [29] Understanding technological innovation: a socio-technical approach
    Israel, Paul
    [J]. BUSINESS HISTORY, 2009, 51 (01) : 139 - 141
  • [30] A Socio-technical Approach for Transient SME Alliances
    Rezgui, Yacine
    [J]. LEVERAGING KNOWLEDGE FOR INNOVATION IN COLLABORATIVE NETWORKS, 2009, 307 : 603 - 613