A Study of Employees' Self-Reported Cybersecurity Behaviors

نویسنده

  • Wu He
چکیده

The information security community has come to realize that the weakest link in a cybersecurity chain is human behavior. To develop effective cybersecurity training programs for employees in the workplace, it is necessary to identify factors that contribute to employees’ cybersecurity behaviors and then build a theoretical model to understand how these factors affect employees’ self-reported security behavior in the workplace. Supported by a grant from the National Science Foundation (NSF), we developed a model for studying employees’ self-reported cybersecurity behaviors, and conducted a survey study to investigate the cybersecurity behavior and beliefs of employees. Five-hundred-seventy-nine employees from various U.S. organizations and companies completed an online survey with 87 items carefully designed by six experts in cybersecurity, information technology, psychology, and decision science. The results from statistical analysis of the cybersecurity behavior survey questionnaire will be presented in this TREO Talk. Some of the key findings include:  Prior Experience was correlated with self-reported cyber security behavior. However, it was not identified as a unique predictor in our regression analysis. This suggests that the prior training may indirectly affect cybersecurity behavior through other variables.  Peer Behavior was not a unique predictor of self-reported cybersecurity behavior. Perceptions of peer behavior may reflect people’s own self-efficacy with cybersecurity and their perceptions of the benefits from cybersecurity behaviors.  The regression model revealed four unique predictors of self-reported cybersecurity behavior: Computer Skill, Perceived Benefits, Perceived Barriers, and Security Self-efficacy. These variables should be assessed to identify employees who are at risk of cyber attacks and could be the target of interventions.  There are statistically significant gender-wise differences in terms of computer skills, prior experience, cues-to-action, security self-efficacy and self-reported cybersecurity behaviors. Since women’s self-efficacy is significantly lower than men, women’s self-efficacy may be a target for intervention.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Gender difference and employees' cybersecurity behaviors

Security breaches are prevalent in organizations and many of the breaches are attributed to human errors. As a result, the organizations need to increase their employees’ security awareness and their capabilities to engage in safe cybersecurity behaviors. Many different psychological and social factors affect employees’ cybersecurity behaviors. An important research question to explore is to wh...

متن کامل

Is Media Multitasking Good for Cybersecurity? Exploring the Relationship Between Media Multitasking and Everyday Cognitive Failures on Self-Reported Risky Cybersecurity Behaviors

The current study focused on how engaging in media multitasking (MMT) and the experience of everyday cognitive failures impact on the individual’s engagement in risky cybersecurity behaviors (RCsB). In total, 144 participants (32 males, 112 females) completed an online survey. The age range for participants was 18 to 43 years (M= 20.63, SD= 4.04). Participants completed three scales which inclu...

متن کامل

The Impact of Employees’ Self-alienation toward Work and Organization’s Policies on Their Attitudes and Behaviors

Purpose: Employees’ self-alienation toward work and organization’s grand policies disrupts the implementation of policies and reaching goals. This study intended to investigate into self-alienation toward work and policies and how it affects the employees’ attitudes and behaviors. Methodology: The approach of this research is quantitative. The sample size, determined by simple random sampling ...

متن کامل

Relationship between Ethical Leadership & Corporate Citizen Behaviors: Mediating Role of Self-efficacy, Respect and Interaction between Manager & Employees

Background: The main nature of corporate citizen behaviors includes the idea that corporate citizen behaviors are beneficial behaviors that are critical to improving organizational performance. The purpose of this study is to identify the relationship between ethical leadership and individual and organizational corporate citizenship behaviors, with the moderating role of self-efficacy, respect ...

متن کامل

نگرش و رفتار استفاده از وسایل ایمنی و حفاظت فردی: تحلیل مخاطب برای طراحی یک مداخله تغییر رفتار برای کارگران ایستگاه های در حال ساخت مترو اصفهان

  Background and Aims: Audience analysis has important role in designing behavior change interventions. In this study, we aimed to measure attitudes and behaviors related to usage of personal protective equipment (PPE) to design an intervention for persuading employees to use PPE in their work settings.     Methods: In this cross-sectional analytical study, an attitude and self- reported behavi...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2016