Cybersecurity threats are increasing in all aspects of society due to the integration of digital systems into modern-day life and a volatile geo-political landscape. Technical factors are an ongoing arms race; however, the threat surface from human and social factors is still present, often providing malicious actors the means to bypass complex technical security controls. Understanding human factors in light of technical evolution is essential to ensure security controls remain effective. This study presents the results of a survey on cybersecurity challenges within public and private sector organisations, including critical infrastructure providers, in Iceland (N = 130). From the management perspective, human factors were strongly noted as challenges and barriers to their organisations' security. These challenges include a lack of adequate training or awareness, hiring issues, poor cybersecurity culture, and time and/or financial resource constraints. Based on these findings, recommendations for mitigating threats from human factors are derived. These include: prioritising targeted over generic training to reduce employee fatigue, external government support for financially constrained organisations, and building a strong cybersecurity culture through constructive communication around shared responsibilities.


翻译:随着数字系统融入现代生活以及地缘政治格局的不稳定,社会各层面的网络安全威胁日益加剧。技术因素是一场持续的军备竞赛;然而,由人为和社会因素构成的威胁面依然存在,经常为恶意行为者提供绕过复杂技术安全控制的手段。在技术演进背景下理解人为因素对于确保安全控制措施持续有效至关重要。本研究呈现了一项针对冰岛公共和私营部门组织(包括关键基础设施提供者)网络安全挑战的调查结果(样本量N=130)。从管理层视角来看,人为因素被明确视为组织安全面临的挑战与障碍。这些挑战包括:缺乏充分的培训或安全意识、招聘困难、网络安全文化薄弱,以及时间和/或财政资源限制。基于这些发现,本研究提出了缓解人为因素威胁的建议,包括:优先采用针对性培训而非通用培训以减少员工疲劳感,为财政受限的组织提供政府外部支持,以及通过围绕共同责任进行建设性沟通来构建强大的网络安全文化。

0
下载
关闭预览

相关内容

《人工智能在网络防御中的机遇》
专知会员服务
12+阅读 · 6月8日
人工智能与机器学习对组织网络安全的影响研究 | 273页
专知会员服务
19+阅读 · 2025年10月27日
《军事领域人工智能网络安全的数字主权控制框架》
专知会员服务
21+阅读 · 2025年9月20日
《人工智能和机器学习对网络安全的影响》最新273页
专知会员服务
42+阅读 · 2024年11月29日
【新书】利用生成式人工智能进行网络防御策略
专知会员服务
33+阅读 · 2024年10月18日
专知会员服务
49+阅读 · 2021年6月25日
《人工智能安全测评白皮书》,99页pdf
专知
36+阅读 · 2022年2月26日
反无人机技术的方法与难点
无人机
35+阅读 · 2019年4月30日
人工智能对网络空间安全的影响
走向智能论坛
21+阅读 · 2018年6月7日
最新人机对话系统简略综述
专知
26+阅读 · 2018年3月10日
国家自然科学基金
2+阅读 · 2015年12月31日
国家自然科学基金
19+阅读 · 2015年12月31日
国家自然科学基金
2+阅读 · 2015年12月31日
国家自然科学基金
20+阅读 · 2015年12月31日
国家自然科学基金
2+阅读 · 2014年12月31日
国家自然科学基金
1+阅读 · 2014年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
4+阅读 · 2014年12月31日
Arxiv
23+阅读 · 2023年3月8日
VIP会员
最新内容
综述 | 面向机器人的视觉触觉智能
专知会员服务
0+阅读 · 今天14:51
论文 | 基础模型驱动具身智能体安全综述
专知会员服务
0+阅读 · 今天14:43
伊朗-美国-以色列冲突教训
专知会员服务
0+阅读 · 今天13:06
《美国陆军 · 战役规划手册(2027年)》237页
专知会员服务
4+阅读 · 今天12:48
综述 | 自我中心视频中的视觉语言模型
专知会员服务
2+阅读 · 8月21日
综述 | 自演化智能体作为动态图变换
专知会员服务
5+阅读 · 8月21日
综述 | 自我中心视频中的视觉语言模型
专知会员服务
8+阅读 · 8月20日
综述 | 基础模型时代的人本智能全景
专知会员服务
6+阅读 · 8月20日
综述 | 多模态大模型的不确定性感知决策
专知会员服务
8+阅读 · 8月19日
综述 | Deep Academic Survey:有状态闭环综述自动化
综述 | 触觉与力觉感知机器人学习
专知会员服务
10+阅读 · 8月18日
综述 | AI科学家的过去与未来
专知会员服务
12+阅读 · 8月18日
相关基金
国家自然科学基金
2+阅读 · 2015年12月31日
国家自然科学基金
19+阅读 · 2015年12月31日
国家自然科学基金
2+阅读 · 2015年12月31日
国家自然科学基金
20+阅读 · 2015年12月31日
国家自然科学基金
2+阅读 · 2014年12月31日
国家自然科学基金
1+阅读 · 2014年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
4+阅读 · 2014年12月31日
Top
微信扫码咨询专知VIP会员