Making sense of the unknown: How managers make cyber security decisions

نویسندگان

چکیده

Managers rarely have deep knowledge of cyber security and yet are expected to make decisions with implications for software-based systems. We investigate the decision-making conversations seven teams senior managers from same organisation as they complete Decisions & Disruptions exercise. use grounded theory situate our analysis their help us explore how these complex socio-cognitive interactions occur. developed a goal-model (using iStar 2.0) teams’ dialogue that illustrates what goals identify operationalise reach goals. complement this model reasoning describes decisions, showing each team members’ experience, intuition, understanding affects team’s overall shared decision-making. Our findings show little expertise able logic traditional risk management thinking decisions. Despite lack security–specific training, demonstrate closely resembles approaches espoused in standards (e.g., NIST/ISO). work demonstrates organisations practitioners can enrich goal modelling capture not only an has (and them) but also why been identified. Ultimately, non–cyber experts develop based on current context update it when new requirements appear or incidents happen), whilst capturing at every stage.

برای دانلود باید عضویت طلایی داشته باشید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

How mast cells make decisions.

Mast cells (MCs) are present in various tissues and are responsible for initiating many of the early inflammatory responses to extrinsic challenges. Recent studies have demonstrated that MCs can tailor their responses, depending on the stimulus encountered and the tissue in which they are stimulated. In this issue of the JCI, Gaudenzio and colleagues examine the mechanistic differences between ...

متن کامل

Making Time Make Sense in Robotic Simulation

Typical dynamic robotic simulators model the rigid body dynamics of robots using ordinary differential equations (ODEs). Such software libraries have traditionally focused on simulating the rigid body dynamics robustly, quickly, and accurately toward obtaining consistent dynamics performance between simulation and in situ. However, simulation practitioners have generally yet to investigate main...

متن کامل

CHA task force helps managers make values-based decisions.

ore than a year ago, members of the Cathol ic Heal th Assoc ia t ion ' s Division of Theology, Mission, and Ethics began to notice that Catholic healthcare administrators were becoming increasingly concerned about questions related to managing and directing healthcare institutions. A growing number of members were contacting CHA with ques t ions about values tha t arc embodied in corporate stru...

متن کامل

How to make a goddess angry: making sense of the Demeter Ode in Euripides’ Helen

Copyright and Moral Rights for the articles on this site are retained by the individual authors and/or other copyright owners. For more information on Open Research Online's data policy on reuse of materials please consult the policies page.

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: ACM Transactions on Software Engineering and Methodology

سال: 2023

ISSN: ['1049-331X', '1557-7392']

DOI: https://doi.org/10.1145/3548682