EconPapers    
Economics at your fingertips  
 

Social Engineering: The Neglected Human Factor for Information Security Management

Xin Luo, Richard Brody, Alessandro Seazzu and Stephen Burd
Additional contact information
Xin Luo: The University of New Mexico, USA
Richard Brody: The University of New Mexico, USA
Alessandro Seazzu: The University of New Mexico, USA
Stephen Burd: The University of New Mexico, USA

Information Resources Management Journal (IRMJ), 2011, vol. 24, issue 3, 1-8

Abstract: Effective information systems security management combines technological measures and managerial efforts. Although various technical means have been employed to cope with security threats, human factors have been comparatively neglected. This article examines human factors that can lead to social engineering intrusions. Social engineering is a technique used by malicious attackers to gain access to desired information by exploiting the flaws in human logic known as cognitive biases. Social engineering is a potential threat to information security and should be considered equally important to its technological counterparts. This article unveils various social engineering attacks and their leading human factors, and discusses several ways to defend against social engineering: education, training, procedure, and policy. The authors further introduce possible countermeasures for social engineering attacks. Future analysis is also presented.

Date: 2011
References: Add references at CitEc
Citations: View citations in EconPapers (3)

Downloads: (external link)
http://services.igi-global.com/resolvedoi/resolve. ... 4018/irmj.2011070101 (application/pdf)

Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.

Export reference: BibTeX RIS (EndNote, ProCite, RefMan) HTML/Text

Persistent link: https://EconPapers.repec.org/RePEc:igg:rmj000:v:24:y:2011:i:3:p:1-8

Access Statistics for this article

Information Resources Management Journal (IRMJ) is currently edited by George Kelley

More articles in Information Resources Management Journal (IRMJ) from IGI Global
Bibliographic data for series maintained by Journal Editor ().

 
Page updated 2025-03-19
Handle: RePEc:igg:rmj000:v:24:y:2011:i:3:p:1-8