Répertoire de publications
de recherche en accès libre
de recherche en accès libre
Arduin, Pierre-Emmanuel et Vieru, Dragos (2017). Workarounds as means to identify insider threats to information systems security. Dans Proceedings of the Twenty-third Americas Conference on Information Systems, Boston 2017. Association for Information Systems.
Fichier(s) associé(s) à ce document :
PDF
- PEA-DV-AMCIS-0041-2017-accepted.pdf
Contenu du fichier : Version de l'éditeur |
|
Catégorie de document : | Communications dans des actes de congrès/colloques |
---|---|
Évaluation par un comité de lecture : | Oui |
Étape de publication : | Publié |
Résumé : | Workarounds represent deliberate actions of employees in contrast with the prescribed practices and organizations generally perceive them as unwanted processes. Workarounds may lead to information systems (IS) security policy violations, notably when prescribed practices lead employees to face obstacles in accomplishing their daily tasks. Such behavior generates new insider threats to IS security. In this article, we adopt the view that workarounds may enable the identification of new security threats. We propose a conceptual model that illustrates how workarounds generating non-malicious security violations might constitute sources of knowledge about new security threats. |
Déposant: | Vieru, Dragos |
Responsable : | Dragos Vieru |
Dépôt : | 05 mai 2017 18:37 |
Dernière modification : | 11 sept. 2017 15:56 |
RÉVISER |