Digitala Vetenskapliga Arkivet

Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Security-Related Stress: A Perspective on Information Security Risk
Luleå University of Technology, Department of Computer Science, Electrical and Space Engineering, Digital Services and Systems.ORCID iD: 0000-0003-1692-5721
School of Informatics, University of Skövde, Skövde, Sweden.ORCID iD: 0000-0002-1436-2980
2019 (English)In: 2019 International Conference on Cyber Security and Protection of Digital Services (Cyber Security), IEEE, 2019Conference paper, Published paper (Refereed)
Abstract [en]

In this study, the enactment of information security risk management by novice practitioners is studied by applying an analytical lens of security-related stress. Two organisations were targeted in the study using a case study approach to obtain data about their practices. The study identifies stressors and stress inhibitors in the ISRM process and the supporting ISRM tools and discusses the implications for practitioners. For example, a mismatch between security standards and how they are interpreted in practice has been identified. This mismatch was further found to be strengthened by the design of the used ISRM tools. Those design shortcomings hamper agility since they may enforce a specific workflow or may restrict documentation. The study concludes that security-related stress can provide additional insight into security-novice practitioners’ ISRM challenges. 

Place, publisher, year, edition, pages
IEEE, 2019.
Keywords [en]
Information security, information security risk management, novices, stress, tools, compliance, management
National Category
Information Systems, Social aspects
Research subject
Information systems; Centre - Centre for Critical Infrastructure and Societal Security (CISS)
Identifiers
URN: urn:nbn:se:ltu:diva-75681DOI: 10.1109/CyberSecPODS.2019.8884877Scopus ID: 2-s2.0-85075007461OAI: oai:DiVA.org:ltu-75681DiVA, id: diva2:1345408
Conference
International Conference On Cyber Security and Protection of Digital Services (Cyber Security) 2019, Oxford, United Kingdom, June 3-4, 2019
Funder
Interreg Nord, 2014-2020 (20201650)
Note

ISBN för värdpublikation: 978-1-7281-0229-0

Available from: 2019-08-23 Created: 2019-08-23 Last updated: 2023-09-05Bibliographically approved

Open Access in DiVA

fulltext(238 kB)456 downloads
File information
File name FULLTEXT01.pdfFile size 238 kBChecksum SHA-512
6ccb2b81e002b7bd7851b7c0b3afc40daf7ea83431f947d33f1e96c7ca1c024ea7a512c49b9dcd9f9718a7c1cafd58f08a116b00fe6fc960a9f4898b363afb82
Type fulltextMimetype application/pdf

Other links

Publisher's full textScopus

Search in DiVA

By author/editor
Lundgren, MartinBergström, Erik
By organisation
Digital Services and Systems
Information Systems, Social aspects

Search outside of DiVA

GoogleGoogle Scholar
Total: 456 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

doi
urn-nbn

Altmetric score

doi
urn-nbn
Total: 633 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf