Challenges, collaborative interactions, and diagnosis performed by IT security practitioners : an empirical study

This thesis investigates four different aspects of information security management: challenges faced by security practitioners, interactive collaborations among security practitioners and other stakeholders, diagnostic work performed by security practitioners during the response to incidents, and fa...

Full description

Bibliographic Details
Main Author: Werlinger, Rodrigo
Format: Others
Language:English
Published: University of British Columbia 2008
Subjects:
Online Access:http://hdl.handle.net/2429/1013
id ndltd-LACETR-oai-collectionscanada.gc.ca-BVAU.-1013
record_format oai_dc
spelling ndltd-LACETR-oai-collectionscanada.gc.ca-BVAU.-10132013-06-05T04:16:51ZChallenges, collaborative interactions, and diagnosis performed by IT security practitioners : an empirical studyWerlinger, RodrigoInformation securityQualitative researchThis thesis investigates four different aspects of information security management: challenges faced by security practitioners, interactive collaborations among security practitioners and other stakeholders, diagnostic work performed by security practitioners during the response to incidents, and factors that impact the adoption of an intrusion detection system in one organization. Our approach is based on qualitative analyzes of empirical data from semi-structured interviews and participatory observation. For each theme under study, the contributions of the qualitative analysis are twofold. First, we provide a richer understanding of the main factors that affect the security within organizations. Second, equipped with this richer understanding, we provide recommendations on how to improve security tools, along with opportunities for future research. Our findings contribute to the understanding of the human, organizational, and technological factors that affect security in organizations and the effectiveness of security tools. Our work also highlights the need for continued refinement of how factors interplay by obtaining more rich data (e.g., contextual inquiry), and the need to generalize and validate these findings through other sources of information to study how these factors interplay (e.g., surveys).University of British Columbia2008-07-15T21:02:23Z2008-07-15T21:02:23Z20082008-07-15T21:02:23Z2008-11Electronic Thesis or Dissertation5344431 bytesapplication/pdfhttp://hdl.handle.net/2429/1013eng
collection NDLTD
language English
format Others
sources NDLTD
topic Information security
Qualitative research
spellingShingle Information security
Qualitative research
Werlinger, Rodrigo
Challenges, collaborative interactions, and diagnosis performed by IT security practitioners : an empirical study
description This thesis investigates four different aspects of information security management: challenges faced by security practitioners, interactive collaborations among security practitioners and other stakeholders, diagnostic work performed by security practitioners during the response to incidents, and factors that impact the adoption of an intrusion detection system in one organization. Our approach is based on qualitative analyzes of empirical data from semi-structured interviews and participatory observation. For each theme under study, the contributions of the qualitative analysis are twofold. First, we provide a richer understanding of the main factors that affect the security within organizations. Second, equipped with this richer understanding, we provide recommendations on how to improve security tools, along with opportunities for future research. Our findings contribute to the understanding of the human, organizational, and technological factors that affect security in organizations and the effectiveness of security tools. Our work also highlights the need for continued refinement of how factors interplay by obtaining more rich data (e.g., contextual inquiry), and the need to generalize and validate these findings through other sources of information to study how these factors interplay (e.g., surveys).
author Werlinger, Rodrigo
author_facet Werlinger, Rodrigo
author_sort Werlinger, Rodrigo
title Challenges, collaborative interactions, and diagnosis performed by IT security practitioners : an empirical study
title_short Challenges, collaborative interactions, and diagnosis performed by IT security practitioners : an empirical study
title_full Challenges, collaborative interactions, and diagnosis performed by IT security practitioners : an empirical study
title_fullStr Challenges, collaborative interactions, and diagnosis performed by IT security practitioners : an empirical study
title_full_unstemmed Challenges, collaborative interactions, and diagnosis performed by IT security practitioners : an empirical study
title_sort challenges, collaborative interactions, and diagnosis performed by it security practitioners : an empirical study
publisher University of British Columbia
publishDate 2008
url http://hdl.handle.net/2429/1013
work_keys_str_mv AT werlingerrodrigo challengescollaborativeinteractionsanddiagnosisperformedbyitsecuritypractitionersanempiricalstudy
_version_ 1716586738941427712