Human Error - A Critical Contributing Factor to the Rise in Data Breaches: A Case Study of Higher Education
Amoresano Katherine and
Yankson Benjamin ()
Additional contact information
Amoresano Katherine: HackIoT Lab, University at Albany, State University of New York. 1400 Washington Ave, Albany, NY 12222. USA
Yankson Benjamin: HackIoT Lab, University at Albany, State University of New York. 1400 Washington Ave, Albany, NY 12222. USA
HOLISTICA – Journal of Business and Public Administration, 2023, vol. 14, issue 1, 110-132
Abstract:
With increasing technical safeguards to protect information systems, Human error continues to be a critical factor contributing to the rise in information systems attacks and data breaches. Inadequate or unenforceable Cybersecurity policies or training can open doors for adversaries to circumvent technical safeguards and paint a picture of a growing cybersecurity problem. The problem investigated in this work assesses if organizations adequately invest in resources to provide industry-aligned cybersecurity education, training, and awareness that can minimize human error leading to cyber-attacks. This work aims to investigate breaches attributed to human errors and compare cybersecurity policies, education, training, and awareness programs in three different schools in New York State. The work focused on user awareness and vulnerable behaviours, effective training for users, and investigating start-of-the-art approaches to gauge or evaluate the organization’s cybersecurity stance when compared to industry frameworks like the NIST framework. A Triangulation research approach including quantitative, qualitative, and descriptive methods are adopted for this work. Instruments for data collection include a survey, literature review, qualitative analysis to identify research gaps, and assessments of the questionnaires. This work demonstrates that formulated enforced cybersecurity policies coupled with targeted security education, training, and awareness are instrumental to decreasing user errors, thereby reducing the probability of a cyber-attack.
Keywords: Human Error; Security; Policies; Training; Attacks (search for similar items in EconPapers)
Date: 2023
References: Add references at CitEc
Citations:
Downloads: (external link)
https://doi.org/10.2478/hjbpa-2023-0007 (text/html)
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:vrs:hjobpa:v:14:y:2023:i:1:p:110-132:n:3
DOI: 10.2478/hjbpa-2023-0007
Access Statistics for this article
HOLISTICA – Journal of Business and Public Administration is currently edited by Adriana Grigorescu
More articles in HOLISTICA – Journal of Business and Public Administration from Sciendo
Bibliographic data for series maintained by Peter Golla ().