VISTA : an inclusive insider threat taxonomy, with mitigation strategies
Renaud, Karen and Warkentin, Merrill and Pogrebna, Ganna and van der Schyff, Karl (2024) VISTA : an inclusive insider threat taxonomy, with mitigation strategies. Information & Management, 61 (1). 103877. ISSN 0378-7206 (https://doi.org/10.1016/j.im.2023.103877)
Preview |
Text.
Filename: Renaud-etal-IM-2023-VISTA-an-inclusive-insider-threat-taxonomy-with-mitigation-strategies.pdf
Final Published Version License: Download (5MB)| Preview |
Abstract
Insiders have the potential to do a great deal of damage, given their legitimate access to organisational assets and the trust they enjoy. Organisations can only mitigate insider threats if they understand what the different kinds of insider threats are, and what tailored measures can be used to mitigate the threat posed by each of them. Here, we derive VISTA (inclusiVe InSider Threat tAxonomy) based on an extensive literature review and a survey with C-suite executives to ensure that the VISTA taxonomy is not only scientifically grounded, but also meets the needs of organisations and their executives. To this end, we map each VISTA category of insider threat to tailored mitigations that can be deployed to reduce the threat.
ORCID iDs
Renaud, Karen ORCID: https://orcid.org/0000-0002-7187-6531, Warkentin, Merrill, Pogrebna, Ganna and van der Schyff, Karl;-
-
Item type: Article ID code: 87015 Dates: DateEvent31 January 2024Published21 October 2023Published Online18 October 2023AcceptedSubjects: Science > Mathematics > Electronic computers. Computer science > Other topics, A-Z > Human-computer interaction Department: Faculty of Science > Computer and Information Sciences Depositing user: Pure Administrator Date deposited: 20 Oct 2023 11:02 Last modified: 11 Nov 2024 14:07 URI: https://strathprints.strath.ac.uk/id/eprint/87015