The motivation of the current paper is the search for responses about decision making in both context, computer and non-computer scenarios, thus whether no difference shall be found, the large behavioural literature on non-computer decision making can be used to interpret security issues. The effort is then devoted to identify a set of organisational literature contribution to emerging forms of organisations and behaviours with respect to the human factor and security problems. While many authors propose a top-down view of organisational/policy-directed security the proposition of this paper is a bottom-up analysis, addressed to the end-user as a member of the organisation and moreover of its culture. As the results of the work, a threefold set of theoretical frameworks has been identified, leading to a robust conceptual base: the “Contingency Model of Strategic Risk Taking” of Baird; the “Strategic modeling technique for information security risk assessment” of Misra, and a major contribution of Ciborra’s work.

Human computer interaction and systems security - an organisational appraisal

Cavallari, Maurizio
2008-01-01

Abstract

The motivation of the current paper is the search for responses about decision making in both context, computer and non-computer scenarios, thus whether no difference shall be found, the large behavioural literature on non-computer decision making can be used to interpret security issues. The effort is then devoted to identify a set of organisational literature contribution to emerging forms of organisations and behaviours with respect to the human factor and security problems. While many authors propose a top-down view of organisational/policy-directed security the proposition of this paper is a bottom-up analysis, addressed to the end-user as a member of the organisation and moreover of its culture. As the results of the work, a threefold set of theoretical frameworks has been identified, leading to a robust conceptual base: the “Contingency Model of Strategic Risk Taking” of Baird; the “Strategic modeling technique for information security risk assessment” of Misra, and a major contribution of Ciborra’s work.
2008
978-3-7908-2010-2
security
systems
organisational theory
conceptual analysis
File in questo prodotto:
File Dimensione Formato  
CAVALLARI_ITAis2007_HCI&sys_security_FINAL_PAPER(7pagine).pdf

non disponibili

Dimensione 156.5 kB
Formato Adobe PDF
156.5 kB Adobe PDF   Visualizza/Apri   Richiedi una copia

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14086/2495
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
social impact