The browser you are using is not supported by this website. All versions of Internet Explorer are no longer supported, either by us or Microsoft (read more here: https://www.microsoft.com/en-us/microsoft-365/windows/end-of-ie-support).

Please use a modern browser to fully experience our website, such as the newest versions of Edge, Chrome, Firefox or Safari etc.

Developing contextual understanding of information security risks

Author

  • Moufida Sadok
  • Vasilios Katos
  • Peter Bednar

Editor

  • Nathan Clarke
  • Steven Furnell

Summary, in English

Given the uncertainty and complexity of security risk analyses, there is a great need of tools for contextual inquiry supporting assessment of risk with multi-value scales according to different stakeholders’ point of view. Such tools can be used at individual level to help develop the understanding of a problem space. At the collective level, they can be used as a mean of communication to support the discussion, comparison and exploration of different understandings. The exploration of multiple perspectives of contextual understanding avoids entrapment in various types of reductionism and eliminates tendencies towards a deterministic reasoning and the pursuit of one optimum solution. A critical challenge is first developing a large spectrum of alternatives and then managing how the differences and similarities between alternatives will be handled to efficiently support decisions in information systems security (ISS). To address the aforementioned challenges, this paper seeks to explore the potential relevance of cognitive maps use in an ISS context to support the exploration of individual understanding leading to richer elaboration of problem spaces.

Publishing year

2014

Language

English

Pages

1-10

Publication/Series

Proceedings of the Eighth International Symposium on Human Aspects of Information Security & Assurance (HAISA 2014)

Document type

Conference paper

Publisher

Centre for Security, Communications and Network Research, Plymouth University, UK

Topic

  • Information Systems, Social aspects

Keywords

  • Risk analysis
  • Systemic risk
  • Cognitive map
  • Contextual analysis
  • Information security
  • Uncertainty

Conference name

Human Aspects of Information Security and Assurance, HAISA 2014

Conference date

2014-07-08 - 2014-07-09

Conference place

Plymouth, United Kingdom

Status

Published

ISBN/ISSN/Other

  • ISBN: 9781841023755