Security awareness management - Foundations and implementation of security awareness

被引:0
|
作者
vom Brocke, J [1 ]
Buddendick, C [1 ]
机构
[1] Univ Munster, ERCIS, D-48149 Munster, Germany
关键词
security management; security awareness; channel management; IT-security; security policies;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
IT security is highly important for companies. The subject of IT security management is the development of techniques ensuring the security of information systems. Actual surveys show that human actions are the predominant reason for operational disturbances. With regard to this fact, IT security management has to be extended by specific elements that focus on human behaviour. In this article a security awareness management (SAM) is, therefore, presented. In order to gain insight about this new field of security management, first theoretical foundations of behavioural science are analysed with respect to its use for SAM. These findings serve as a basis for the derivation of requirements for the implementation of SAM in practice. In order to prove the concept, results of its application in an empirical project are presented. Finally, the lessons learned of this approach are summarised and perspectives for further research are highlighted.
引用
收藏
页码:221 / 227
页数:7
相关论文
共 50 条
  • [1] Security Awareness: A Knowledge Management Problem
    Lupiana, Dennis
    Lawless, Deirdre
    [J]. PROCEEDINGS OF THE 10TH EUROPEAN CONFERENCE ON KNOWLEDGE MANAGEMENT , VOLS 1 AND 2, 2009, : 503 - 510
  • [2] Security awareness
    Stone, A
    [J]. IEEE INTERNET COMPUTING, 2003, 7 (02) : 9 - 10
  • [3] Information security management: An information security retrieval and awareness model for industry
    Kritzinger, E.
    Smith, E.
    [J]. COMPUTERS & SECURITY, 2008, 27 (5-6) : 224 - 231
  • [4] Success in security awareness
    Iaschi, Federico
    [J]. ITNOW, 2021, 62 (04): : 50 - 51
  • [5] Rezension „Security Awareness“
    K. Weber
    [J]. HMD Praxis der Wirtschaftsinformatik, 2020, 57 (3) : 631 - 633
  • [6] FOCUS ON SECURITY EDUCATION TO INCREASE SECURITY AWARENESS
    Jankura, R.
    Halaj, M.
    Hofreiter, L.
    [J]. 13TH INTERNATIONAL TECHNOLOGY, EDUCATION AND DEVELOPMENT CONFERENCE (INTED2019), 2019, : 3086 - 3091
  • [7] POMEGA: Security Game for Building Security Awareness
    Visoottiviseth, Vasaka
    Sainont, Rossarin
    Boonnak, Thanatorn
    Thammakulkrajang, Vorapas
    [J]. 2018 SEVENTH ICT INTERNATIONAL STUDENT PROJECT CONFERENCE (ICT-ISPC), 2018, : 71 - 76
  • [8] Ontology of organizational IT security awareness - From theoretical foundations to practical framework
    Siponen, MT
    Kajava, J
    [J]. SEVENTH IEEE INTERNATIONAL WORKSHOPS ON ENABLING TECHNOLOGIES: INFRASTRUCTURE FOR COLLABORATIVE ENTERPRISES (WET ICE '98), 1998, : 327 - 331
  • [9] A situation awareness model for information security risk management
    Webb, Jeb
    Ahmad, Atif
    Maynard, Sean B.
    Shanks, Graeme
    [J]. COMPUTERS & SECURITY, 2014, 44 : 1 - 15
  • [10] Survey on Awareness and Security Issues in Password Management Strategies
    Jeslet, D. Santhi
    Sivaraman, G.
    Uma, M.
    Thangadurai, K.
    Punithavalli, M.
    [J]. INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2010, 10 (04): : 19 - 23