论文标题

组织的网络安全行为

Cyber Security Behaviour In Organisations

论文作者

Ertan, Amy, Crossland, Georgia, Heath, Claude, Denny, David, Jensen, Rikke

论文摘要

这篇评论在组织的日常网络安全背景下探讨了学术和政策文献。这样一来,它标识了四个行为集,这些行为集影响了人们如何练习网络安全。这些是遵守安全策略,组间协调和通信,网络钓鱼/电子邮件行为和密码行为的遵守。但是,重要的是要注意,它们并不详尽,它们并不孤立地存在。此外,该评论还探讨了安全文化的概念,作为与四个行为集重叠并构成四个行为集的总体主题。因此,这篇综述的目的是在社会科学范围内日常网络安全领域提供现有文献的摘要,并特别关注组织环境。在此过程中,它基于文献中现有的差距为未来的研究方向提出了一系列建议。该综述还包括一个理论镜头,将有助于理解现有研究和更广泛的文献。在可能的情况下,审查就与日常网络安全有关的组织提出了建议。

This review explores the academic and policy literature in the context of everyday cyber security in organisations. In so doing, it identifies four behavioural sets that influences how people practice cyber security. These are compliance with security policy, intergroup coordination and communication, phishing/email behaviour, and password behaviour. However, it is important to note that these are not exhaustive and they do not exist in isolation. In addition, the review explores the notion of security culture as an overarching theme that overlaps and frames the four behavioural sets. The aim of this review is therefore to provide a summary of the existing literature in the area of everyday cyber security within the social sciences, with a particular focus on organisational contexts. In doing so, it develops a series of suggestions for future research directions based on existing gaps in the literature. The review also includes a theoretical lens that will aid the understanding of existing studies and wider literatures. Where possible, the review makes recommendations for organisations in relation to everyday cyber security.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源