Article (Périodiques scientifiques)
Service security and privacy as a socio-technical problem
Bella, Giampaolo; Curzon, Paul; LENZINI, Gabriele
2015In Journal of Computer Security, 23 (5), p. 563-585
Peer reviewed vérifié par ORBi
 

Documents


Texte intégral
Service security and privacy.pdf
Postprint Éditeur (384.32 kB)
Télécharger

Tous les documents dans ORBilu sont protégés par une licence d'utilisation.

Envoyer vers



Détails



Mots-clés :
Security ceremony; concertina; cloud; cybersecurity; modelling; analysis; verification; awareness
Résumé :
[en] The security and privacy of the data that users transmit, more or less deliberately, to modern services is an open problem. It is not solely limited to the actual Internet traversal, a sub-problem vastly tackled by consolidated research in security protocol design and analysis. By contrast, it entails much broader dimensions pertaining to how users approach technology and understand the risks for the data they enter. For example, users may express cautious or distracted personas depending on the service and the point in time; further, pre-established paths of practice may lead them to neglect the intrusive privacy policy offered by a service, or the outdated protections adopted by another. The approach that sees the service security and privacy problem as a socio-technical one needs consolidation. With this motivation, the article makes a threefold contribution. It reviews the existing literature on service security and privacy, especially from the socio-technical standpoint. Further, it outlines a general research methodology aimed at layering the problem appropriately, at suggesting how to position existing findings, and ultimately at indicating where a transdisciplinary task force may fit in. The article concludes with the description of the three challenge domains of services whose security and privacy we deem open socio-technical problems, not only due to their inherent facets but also to their huge number of users.
Disciplines :
Sciences informatiques
Auteur, co-auteur :
Bella, Giampaolo;  Univ Catania, Dipartimento Matemat & Informat, Catania, Italy.
Curzon, Paul;  Queen Mary Univ London, Sch Elect Engn & Comp Sci, London, England.
LENZINI, Gabriele  ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Co-auteurs externes :
yes
Langue du document :
Anglais
Titre :
Service security and privacy as a socio-technical problem
Date de publication/diffusion :
2015
Titre du périodique :
Journal of Computer Security
ISSN :
0926-227X
Maison d'édition :
Ios Press, Amsterdam, Inconnu/non spécifié
Volume/Tome :
23
Fascicule/Saison :
5
Pagination :
563-585
Peer reviewed :
Peer reviewed vérifié par ORBi
Disponible sur ORBilu :
depuis le 10 mars 2016

Statistiques


Nombre de vues
189 (dont 8 Unilu)
Nombre de téléchargements
911 (dont 7 Unilu)

citations Scopus®
 
15
citations Scopus®
sans auto-citations
11
citations OpenAlex
 
19

Bibliographie


Publications similaires



Contacter ORBilu