SBE: Small: THE NEW SECURITY CALCULUS: Incentivizing Good User Security Behavior
SBE:小:新的安全演算:激励良好的用户安全行为
基本信息
- 批准号:1618212
- 负责人:
- 金额:$ 49.79万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2016
- 资助国家:美国
- 起止时间:2016-09-15 至 2021-08-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
The threat and impact of cybersecurity breaches are felt throughout society with massive financial losses to businesses and breach of national secrets. Human behavior is increasing seen as a fundamental security vulnerability that is at the center of many security breaches. Several approaches have been used for improving user security behavior, including enacting information security policies, providing security awareness training, and introducing penalties for security violations; these approaches have not been very effective. In this research, we are influencing human security decision analysis through direct financial incentives and behavioral interventions such that the decision analysis aligns with economic rationality. The dominant theoretical frameworks used by researchers to improve information security are Protection Motivation Theory and Deterrence Theory. These theories suggest that users make rational security decisions by cognitively weighing the relative gains and losses associated with their choices within a decision calculus. They assume that users will respond rationally to perceived security threats in the environment and to sanctions imposed on noncompliance. Users are expected to internally regulate their behavior based on an understanding of security threats and the consequences of risky behavior; however, in the course of daily activities users often minimize the risks associated with their behavior and may rationalize noncompliant behavior by perceiving that costs of compliance outweigh benefits. We seek to improve security compliance by changing the user?s security decision calculus. Drawing on principles of behavioral economics, we use extrinsic rewards (i.e. financial incentives) to initiate compliance, and psychological manipulations (nudges) to promote ongoing internal regulation of security behavior, such that users sustain secure behaviors when external incentives are no longer in place. The multidisciplinary nature of this work enhances understanding of many information security issues and provides a fresh perspective for research on behavioral security and security economics.
网络安全漏洞的威胁和影响遍及整个社会,给企业带来巨大的经济损失,并泄露国家机密。人类行为越来越被视为一个基本的安全漏洞,是许多安全漏洞的核心。已经使用了几种方法来改善用户的安全行为,包括制定信息安全策略,提供安全意识培训,并引入对安全违规的处罚,这些方法都不是很有效。在这项研究中,我们通过直接的经济激励和行为干预来影响人类安全决策分析,使决策分析与经济合理性保持一致。研究人员用来提高信息安全的主要理论框架是保护动机理论和威慑理论。这些理论表明,用户通过在决策演算中认知地权衡与他们的选择相关的相对收益和损失来做出理性的安全决策。它们假定用户会对环境中感知到的安全威胁和对不遵守规定的制裁作出理性反应。用户应该根据对安全威胁和风险行为后果的理解来内部规范自己的行为;然而,在日常活动中,用户通常会将与其行为相关的风险降至最低,并可能通过感知合规成本超过收益来合理化不合规行为。我们试图通过改变用户来提高安全合规性?的安全决策演算。根据行为经济学的原理,我们使用外部奖励(即财务激励)来启动合规性,并使用心理操纵(轻推)来促进对安全行为的持续内部监管,以便用户在外部激励不再存在时维持安全行为。这项工作的多学科性质增强了对许多信息安全问题的理解,并为行为安全和安全经济学的研究提供了一个新的视角。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Sanjay Goel其他文献
Integrating the global enterprise using Six Sigma: Business process reengineering at General Electric Wind Energy
- DOI:
10.1016/j.ijpe.2007.12.002 - 发表时间:
2008-06-01 - 期刊:
- 影响因子:
- 作者:
Sanjay Goel;Vicki Chen - 通讯作者:
Vicki Chen
Direct oral anticoagulant (DOACs) prescribing practices of members of the Society of Gynecologic Oncology and American Society of Clinical Oncology (374)
- DOI:
10.1016/s0090-8258(22)01596-7 - 发表时间:
2022-08-01 - 期刊:
- 影响因子:
- 作者:
Lauren Scanlon;Sanjay Goel;Nicole Nevadunsky;Jason Wright;Gregory Gressel - 通讯作者:
Gregory Gressel
Anaesthetic management for the patient of large ostium secundum and severe mitral regurgitation with addison’s disease undergoing minimally invasive cardiac surgery
- DOI:
10.1007/bf03019947 - 发表时间:
2007-06-01 - 期刊:
- 影响因子:3.300
- 作者:
Sanjay Goel;Daniel Bainbridge - 通讯作者:
Daniel Bainbridge
Identifying distinct prognostic and predictive contributions of tumor epithelium versus tumor microenvironment in colorectal cancer
- DOI:
10.1186/s12885-025-13829-2 - 发表时间:
2025-03-12 - 期刊:
- 影响因子:3.400
- 作者:
Mingli Yang;Michael V. Nebozhyn;Michael J. Schell;Nishant Gandhi;Lance Pflieger;Andrey Loboda;W. Jack Pledger;Ramani Soundararajan;Michelle Maurin;Heiman Wang;Jetsen Rodriguez Silva;Ashley Alden;Domenico Coppola;Andrew Elliott;George Sledge;Moh’d Khushman;Emil Lou;Sanjay Goel;Timothy J. Yeatman - 通讯作者:
Timothy J. Yeatman
Anesthetic considerations for a steroid-dependent high-risk patient undergoing minimally invasive cardiac surgery
- DOI:
10.1007/bf03017599 - 发表时间:
2008-01-01 - 期刊:
- 影响因子:3.300
- 作者:
Sanjay Goel;Bob Kiaii;Daniel Bainbridge - 通讯作者:
Daniel Bainbridge
Sanjay Goel的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Sanjay Goel', 18)}}的其他基金
SaTC: CORE: Small: Thwarting the Malicious Insider Evolution Process: The Theory of Strained Betrayal
SaTC:核心:小:阻止恶意内部进化过程:紧张背叛理论
- 批准号:
1912874 - 财政年份:2019
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
EDU: Flipping the Online Security Classroom - Improving Retention of Security Student Pipeline through Early Intervention
EDU:翻转在线安全课堂 - 通过早期干预提高安全学生渠道的保留率
- 批准号:
1318483 - 财政年份:2013
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
相似国自然基金
昼夜节律性small RNA在血斑形成时间推断中的法医学应用研究
- 批准号:
- 批准年份:2024
- 资助金额:0.0 万元
- 项目类别:省市级项目
tRNA-derived small RNA上调YBX1/CCL5通路参与硼替佐米诱导慢性疼痛的机制研究
- 批准号:
- 批准年份:2022
- 资助金额:10.0 万元
- 项目类别:省市级项目
Small RNA调控I-F型CRISPR-Cas适应性免疫性的应答及分子机制
- 批准号:32000033
- 批准年份:2020
- 资助金额:24.0 万元
- 项目类别:青年科学基金项目
Small RNAs调控解淀粉芽胞杆菌FZB42生防功能的机制研究
- 批准号:31972324
- 批准年份:2019
- 资助金额:58.0 万元
- 项目类别:面上项目
变异链球菌small RNAs连接LuxS密度感应与生物膜形成的机制研究
- 批准号:81900988
- 批准年份:2019
- 资助金额:21.0 万元
- 项目类别:青年科学基金项目
肠道细菌关键small RNAs在克罗恩病发生发展中的功能和作用机制
- 批准号:31870821
- 批准年份:2018
- 资助金额:56.0 万元
- 项目类别:面上项目
基于small RNA 测序技术解析鸽分泌鸽乳的分子机制
- 批准号:31802058
- 批准年份:2018
- 资助金额:26.0 万元
- 项目类别:青年科学基金项目
Small RNA介导的DNA甲基化调控的水稻草矮病毒致病机制
- 批准号:31772128
- 批准年份:2017
- 资助金额:60.0 万元
- 项目类别:面上项目
基于small RNA-seq的针灸治疗桥本甲状腺炎的免疫调控机制研究
- 批准号:81704176
- 批准年份:2017
- 资助金额:20.0 万元
- 项目类别:青年科学基金项目
水稻OsSGS3与OsHEN1调控small RNAs合成及其对抗病性的调节
- 批准号:91640114
- 批准年份:2016
- 资助金额:85.0 万元
- 项目类别:重大研究计划
相似海外基金
Collaborative Research: AF: Small: New Directions in Algorithmic Replicability
合作研究:AF:小:算法可复制性的新方向
- 批准号:
2342244 - 财政年份:2024
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
SHF: SMALL: A New Semantics for Type-Level Programming in Haskell
SHF:SMALL:Haskell 中类型级编程的新语义
- 批准号:
2345580 - 财政年份:2024
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
SHF: Small: QED - A New Approach to Scalable Verification of Hardware Memory Consistency
SHF:小型:QED - 硬件内存一致性可扩展验证的新方法
- 批准号:
2332891 - 财政年份:2024
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
Collaborative Research: AF: Small: New Connections between Optimization and Property Testing
合作研究:AF:小型:优化和性能测试之间的新联系
- 批准号:
2402572 - 财政年份:2024
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
Collaborative Research: AF: Small: New Directions in Algorithmic Replicability
合作研究:AF:小:算法可复制性的新方向
- 批准号:
2342245 - 财政年份:2024
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
Collaborative Research: AF: Small: New Connections between Optimization and Property Testing
合作研究:AF:小型:优化和性能测试之间的新联系
- 批准号:
2402571 - 财政年份:2024
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
Collaborative Research: SaTC: CORE: Small: Understanding the Limitations of Wireless Network Security Designs Leveraging Wireless Properties: New Threats and Defenses in Practice
协作研究:SaTC:核心:小型:了解利用无线特性的无线网络安全设计的局限性:实践中的新威胁和防御
- 批准号:
2316720 - 财政年份:2023
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
Collaborative Research: AF: Small: New Directions and Approaches in Discrepancy Theory
合作研究:AF:小:差异理论的新方向和方法
- 批准号:
2327010 - 财政年份:2023
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
Collaborative Research: AF: Small: New Directions and Approaches in Discrepancy Theory
合作研究:AF:小:差异理论的新方向和方法
- 批准号:
2327011 - 财政年份:2023
- 资助金额:
$ 49.79万 - 项目类别:
Standard Grant
Collaborative Research: CSR: Small: Caphammer: A New Security Exploit in Energy Harvesting Systems and its Countermeasures
合作研究:CSR:小型:Caphammer:能量收集系统的新安全漏洞及其对策
- 批准号:
2314681 - 财政年份:2023
- 资助金额:
$ 49.79万 - 项目类别:
Continuing Grant














{{item.name}}会员




