Do organizational security measures contribute to the detection and reporting of IT-system abuses?

نویسندگان

  • Janne Merete Hagen
  • Pål Spilling
چکیده

The paper presents a study of IT systems abuses, based on 390 responses from the Norwegian Computer Crime Survey 2006, and qualitative data from personal interviews of 94 employees in four enterprises required to obey the Norwegian Security Act. The aim of the study has been to shed light on a handful organizational security measures that contribute to the detection and reporting of security incidents. The results confirm significant positive correlations between organizational security measures and reporting of IT abuse incidents. But personal beliefs and judgements of the observed security breaches, however, influence the willingness to report colleagues to security management. Moreover, the results show that the reporting regime in Norwegian enterprises is too loose and the punishment too low to confirm any strong deterrent effect on employees, and most IT abuse incidents are regarded to be insignificant and not considered as criminal incidents.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A New Method for Intrusion Detection Using Genetic Algorithm and Neural network

Abstract— In order to provide complete security in a computer system and to prevent intrusion, intrusion detection systems (IDS) are required to detect if an attacker crosses the firewall, antivirus, and other security devices. Data and options to deal with it. In this paper, we are trying to provide a model for combining types of attacks on public data using combined methods of genetic algorit...

متن کامل

Investigation of Incident Reporting System in Iranian Hospitals: A National Survey

Background and Aims: Incident reporting is a possible alternative for learning from errors. One of the barriers in this way is a deficit in, common standards for collecting, interpreting, and presenting data. In this research accordance with Iranchr('39')s incident reporting system with minimal information Model for Patient Safety Incident Reporting Systems (MIMPS)of WHO were compared. Methods:...

متن کامل

A Lightweight Intrusion Detection System Based on Specifications to Improve Security in Wireless Sensor Networks

Due to the prevalence of Wireless Sensor Networks (WSNs) in the many mission-critical applications such as military areas, security has been considered as one of the essential parameters in Quality of Service (QoS), and Intrusion Detection System (IDS) is considered as a fundamental requirement for security in these networks. This paper presents a lightweight Intrusion Detection System to prote...

متن کامل

موانع گزارش خطا و راهکارهای کاهش آن از دید پرستاران بیمارستان‌های تامین اجتماعی استان کرمان

Abstract Background & Aims: Errors are unavoidable in clinical practice, but it can be minimized in terms of frequency and intensity. Reporting the errors is so important and effectively avoids future errors that may cause patients harm. This study was conducted to identify barriers of error reporting by nurses and preventive strategies in social security hospitals in Kerman, Iran. Materi...

متن کامل

Comparative Advantage, Self-sufficiency and Food Security in Iran: Case Study of Wheat Commodity

Food security has a dynamic notion during the time and may be affected by various domestic and global factors.Nevertheless, Iranian policy makers consider food security as same as self-sufficiency in agricultural food products, particularly wheat production. However, self-sufficiency can contribute to food security only if it is in coincidences with comparative advantage and sustainable resourc...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2009