首页> 外文会议>International conference on information systems;ICIS 2010 >Encouraging Users to Behave Securely:Examining the Influence of Technical, Managerial,and Educational Controls on Users' Secure Behavior
【24h】

Encouraging Users to Behave Securely:Examining the Influence of Technical, Managerial,and Educational Controls on Users' Secure Behavior

机译:鼓励用户安全行为:研究技术,管理和教育控制措施对用户安全行为的影响

获取原文

摘要

The human is frequently referred to as the weakest link of security. Employees who engage in behaviors contrary to their organization's security policy often cause undesirable outcomes. This research presents a dual-processing model explaining and predicting secure behavior in relation to password policies. The model posits that the number of password security layers (technical controls), training (educational controls), and manager attitude toward secure behavior (managerial controls) influence secure behavior directly and also indirectly through security policy satisfaction. An experiment was designed to test our model utilizing a realistic corporate environment that captures users' security policy compliance. The results show that the combination of low technical controls and the presence of training significantly increase new employees' compliance with the security policy. Positive managerial controls and low technical controls increase satisfaction with the security policy; however, satisfaction with the security policy was not significantly related to secure behavior for new employees.
机译:人通常被称为安全的最薄弱环节。员工的行为违反组织的安全政策通常会导致不良后果。这项研究提出了一种双重处理模型,用于解释和预测与密码策略有关的安全行为。该模型假定密码安全层(技术控制),培训(教育控制)和管理员对安全行为(管理控制)的态度的数量直接或间接地通过安全策略的满意度影响安全行为。设计了一个实验来利用真实的公司环境测试我们的模型,该公司环境可以捕获用户的安全策略合规性。结果表明,低技术控制和培训的存在相结合,大大提高了新员工对安全策略的遵从性。积极的管理控制和较低的技术控制可提高对安全策略的满意度;但是,对安全策略的满意度与新员工的安全行为没有显着关系。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号