Balancing Risk Appetite And Risk Attitude In Requirements: A Framework For User Liberation
نویسندگان
چکیده
The tendency to throw controls at perceived and real system vulnerabilities, coupled with the likelihood of these controls being technical in nature, has the propensity to favour security over usability. However there is little evidence of increased assurance and it could encourage work stoppages or deviations that keep honest users from engaging with the system. The conflicting balance of trust and controls, and the challenge of turning that balance into clear requirements, creates an environment that alienates users and feeds the paranoia of actors who assume more ownership of the system than necessary. Security therefore becomes an inhibitor rather than an enabler for the community. This paper looks at measuring the balance of an organisation’s or a community’s risk appetite with the risk attitudes of its members in the early stages of IS development. It suggests how the dials of assurance can be influenced by the levers of good systems practice to create a cultural shift to trusting the users.
منابع مشابه
domestic and international regulations and standards for risk disclosure in banks
Reporting by stakeholder groups, especially shareholders, has always been a demand And reporting and disclosure for the banking network is important. In Iran, banks require disclosing and reporting information and financial and economic events, but there are many international rules and standards for this disclosure. In addition, domestic regulations and requirements are also unclear due to the...
متن کاملDeveloping Ubiquitous Road Accident Hazard Map (Case Study: Tabriz- Marand Road)
Modeling a road accident hazard zoning map to identify high-risk areas is a very effective step to reduce the resulting casualties. Due to the dynamic nature of many of the factors affecting the identification of these areas, traditional zoning mapping does not seem to be effective. In the field of ubiquitous modeling in the framework of the GIS, it is possible to produce a separate map at any ...
متن کاملInsurer Optimal Asset Allocation in a Small and Closed Economy: The Case of Iran’s Social Security Organization
We seek to determine the optimal amount of the insurer’s investment in all types of assets for a small and closed economy. The goal is to detect the implications and contributions the risk seeker and risk aversion insurer commonly make and the effectiveness in the investment decision. Also, finding the optimum portfolio for each is the main goal of the present study. To this end, we adopted the...
متن کاملSustainability Risk Framework for Universities In the Cintext of Covid-19 Pandemic
In today's world, COVID-19 pandemic has affected many organizations. Pandemic issues have created financial and social problems for businesses. Crisis and risk management have a significant impact on reducing consequences of pandemics. Rapid response to risk enhances the performance of organizations in times of crisis. Therefore, a framework to provide risk treatment in a pandemic crisis seems ...
متن کاملسیستمهای مدیریت داروی مبتنی بر سلامت همراه: مروری بر متون
Background and Aim: Medication errors are preventable event, which may result inappropriate medication intake or damage to patients and, Medication management is a complicated process including multiple activities in order to improve patient safety. There are many documentations that indicate the considerable potential of information technology, especially mhealth in this area. The aim of this ...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2014