ORCID

Abstract

Human behaviors and attitudes play a significant role in cybersecurity. However, studies to quantify the impact of such behaviors and attitudes are scarce, and they are not always considered when developing mitigation strategies. To compensate for this, we have looked into a large sample of employees with different levels of expertise and backgrounds across a variety of industrial sectors and organizations. We have found that age and job role constitute the main human factors associated with social media cybersecurity risks. We can confirm that the youngest employees are the most risk prone within an organization, and the employees working in the business and financial sectors are the ones who face the highest amount of cybersecurity risk. In addition, our investigation shows that employees with less than two years of working experience, and those who are at least of age 55, need more cybersecurity training, due to their lack of awareness on the subject. Our work has led us to formulate a risk equation which can assist policymakers and training providers in defining countermeasures against risks and prioritize the training for those who need it the most.

DOI

10.1007/978-3-031-38530-8_28

Publication Date

2023-01-01

Publication Title

Human Aspects of Information Security and Assurance - 17th IFIP WG 11.12 International Symposium, HAISA 2023, Proceedings

ISBN

9783031385292

Embargo Period

2024-07-25

Keywords

Cybersecurity, human factors, risk management, social media

First Page

349

Last Page

363

Share

COinS