Modelling the Human and Technological Costs and Benefits of USB Memory Stick Security

Adam Beautement, Robert Coles, Jonathan Griffin, Christos Ioannidis, Brian Monahan, David J. Pym, Angela Sasse, Michael Wonham

Research output: Chapter in Book/Report/Conference proceedingChapter

Abstract

Organizations deploy systems technologies in order to support their operations and achieve their business objectives. In so doing, they encounter tensions between the confidentiality, integrity, and availability of information, and must make investments in information security measures to address these concerns. We discuss how a macroeconomics-inspired model, analogous to models of interest rate policy used by central banks, can be used to understand trade-offs between investments against threats to confidentiality and availability. We investigate how such a model might be formulated by constructing a process model, based on empirically obtained data, of the use of USB memory sticks by employees of a financial management company.
Original languageEnglish
Title of host publicationManaging Information Risk and the Economics of Security
EditorsM. Eric Johnson
Place of PublicationNew York, NY, USA
PublisherSpringer Science+Business Media
Pages141-163
Number of pages23
ISBN (Print)0387097619, 978-0387097619
DOIs
Publication statusPublished - 2 Dec 2008

Fingerprint

Dive into the research topics of 'Modelling the Human and Technological Costs and Benefits of USB Memory Stick Security'. Together they form a unique fingerprint.

Cite this