CICI: USCC: Supporting Scientists as End-Users in Managing Security and Privacy
CICI: USCC: Supporting Scientists as End-Users in Managing Security and Privacy
批准号:
2232863
负责人:
Michelle Mazurek
金额:
$60.0万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2023
资助国家:
美国
项目状态:
未结题
起止时间:
2023-06-01 至 2026-05-31
中文摘要
科学用户是他们选择的领域的专家,但可能不是一般的计算专家或特定的安全和隐私专家。这项研究调查了广义上定义的科学最终用户,即在他们的科学工作期间需要特定的、有针对性的支持来管理计算系统的安全和隐私的专门用户群体。这项工作的目标是通过回答以下研究问题来评估和改进科学家管理其实验室安全和隐私的最终用户工具和流程:科学家如何考虑其计算和数据资源的安全和隐私?科学家经常使用哪些工具,以及它们如何启用或抑制良好的安全和隐私实践?而且,如何通过更好的指导和新的标准、工具或流程来改善当前的情况?该项目能够改进科学工作流程的安全和隐私工具和流程,并开发专门针对科学家的研讨会和指导文档。该项目使用调查、访谈、文档审查、认知演练和民族志嵌入来调查科学家目前如何了解和执行其设备和数据的安全和隐私相关行为。这些研究旨在洞察当前的工具和实践,以及影响安全和隐私结果的组织激励和障碍,以便提供可操作的改进。该奖项反映了NSF的法定使命,并通过使用基金会的智力优势和更广泛的影响审查标准进行评估,被认为值得支持。
英文摘要
Scientific users are experts in their chosen fields, but may not be experts in computing in general or in security and privacy specifically.This research investigates scientific end-users, defined broadly, as a specialized user group in need of specific, targeted support for managing security and privacy of computing systems during their scientific endeavors. The goal of this work is to evaluate and improve end-user tools and processes for scientists managing security and privacy for their labs, by answering the following research questions: How do scientists think about security and privacy for their computing and data resources? What tools do scientists regularly use, and how do they enable or inhibit good security and privacy practices? And, how can the current situation be improved through better guidance and new standards, tools, or processes? This project enables improvements in security and privacy tools and processes for scientific workflows and develops workshops and guidance documents specifically targeted at scientists.This project uses surveys, interviews, document review, cognitive walkthroughs, and ethnographic embedding to investigate how scientists currently learn about and execute security- and privacy-relevant behaviors for their equipment and data. These studies are designed to gain insight into current tools and practices, as well as organizational incentives and barriers that affect security and privacy outcomes, in order to provide actionable improvements.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Collaborative Research: SaTC: CORE: Medium: Beyond App-centric Privacy: Investigating Privacy Ecosystems among Vulnerable Populations
-
批准号:2309277
-
项目类别:Standard Grant
-
资助金额:$28.0万
-
财政年份:2023
-
负责人:Michelle Mazurek
-
依托单位:
Collaborative Research: SaTC: CORE: Medium: Methods and Tools for Effective, Auditable, and Interpretable Online Ad Transparency
-
批准号:2151290
-
项目类别:Standard Grant
-
资助金额:$27.73万
-
财政年份:2022
-
负责人:Michelle Mazurek
-
依托单位:
CAREER: Improving the Reliability of Human-Centered Secure-Development Research
-
批准号:1943215
-
项目类别:Continuing Grant
-
资助金额:$55.0万
-
财政年份:2020
-
负责人:Michelle Mazurek
-
依托单位:
EAGER: Collaborative Research: Toward Informing Users About Algorithmic Fairness
-
批准号:1844462
-
项目类别:Standard Grant
-
资助金额:$14.73万
-
财政年份:2018
-
负责人:Michelle Mazurek
-
依托单位:
SaTC: CORE: Medium: Collaborative: Understanding Security in the Software Development Lifecycle: A Holistic, Mixed-Methods Approach
-
批准号:1801545
-
项目类别:Continuing Grant
-
资助金额:$69.9万
-
财政年份:2018
-
负责人:Michelle Mazurek
-
依托单位:
海外基金