loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Paper Unlock

Authors: Costas Boletsis 1 ; Ragnhild Halvorsrud 1 ; J. Brian Pickering 2 ; Stephen Phillips 2 and Mike Surridge 2

Affiliations: 1 SINTEF Digital, Oslo, Norway ; 2 IT Innovation Centre, University of Southampton, Southampton, U.K.

Keyword(s): Cybersecurity, Modelling, Socio-technical Risk Assessment, User Journey, Visualisation.

Abstract: Small and medium-sized enterprises (SMEs) rarely conduct a thorough cyber-risk assessment and they may face various internal issues when attempting to set up cyber-risk strategies. In this work, we apply a user journey approach to model human behaviour and visually map SMEs’ practices and threats, along with a visualisation of the socio-technical actor network, targeted specifically at the risks highlighted in the user journey. By using a combination of cybersecurity-related visualisations, our goals are: i) to raise awareness about cybersecurity, and ii) to improve communication among IT personnel, security experts, and non-technical personnel. To achieve these goals, we combine two modelling languages: Customer Journey Modelling Language (CJML) is a visual language for modelling and visualisation of work processes in terms of user journeys. System Security Modeller (SSM) is an asset-based risk-analysis tool for socio-technical systems. By demonstrating the languages’ supplementary nature through a threat scenario and considering related theories, we believe that there is a sound basis to warrant further validation of CJML and SSM together to raise awareness and handle cyber threats in SMEs. (More)

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 18.118.126.241

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Boletsis, C.; Halvorsrud, R.; Pickering, J.; Phillips, S. and Surridge, M. (2021). Cybersecurity for SMEs: Introducing the Human Element into Socio-technical Cybersecurity Risk Assessment. In Proceedings of the 16th International Joint Conference on Computer Vision, Imaging and Computer Graphics Theory and Applications (VISIGRAPP 2021) - IVAPP; ISBN 978-989-758-488-6; ISSN 2184-4321, SciTePress, pages 266-274. DOI: 10.5220/0010332902660274

@conference{ivapp21,
author={Costas Boletsis. and Ragnhild Halvorsrud. and J. Brian Pickering. and Stephen Phillips. and Mike Surridge.},
title={Cybersecurity for SMEs: Introducing the Human Element into Socio-technical Cybersecurity Risk Assessment},
booktitle={Proceedings of the 16th International Joint Conference on Computer Vision, Imaging and Computer Graphics Theory and Applications (VISIGRAPP 2021) - IVAPP},
year={2021},
pages={266-274},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0010332902660274},
isbn={978-989-758-488-6},
issn={2184-4321},
}

TY - CONF

JO - Proceedings of the 16th International Joint Conference on Computer Vision, Imaging and Computer Graphics Theory and Applications (VISIGRAPP 2021) - IVAPP
TI - Cybersecurity for SMEs: Introducing the Human Element into Socio-technical Cybersecurity Risk Assessment
SN - 978-989-758-488-6
IS - 2184-4321
AU - Boletsis, C.
AU - Halvorsrud, R.
AU - Pickering, J.
AU - Phillips, S.
AU - Surridge, M.
PY - 2021
SP - 266
EP - 274
DO - 10.5220/0010332902660274
PB - SciTePress