Broadening the Scope of Security Usability from the Individual to the Organizational : Participation and Interaction for Effective, Efficient, and Agile Authorization
Datei | Beschreibung | Größe | Format | |
---|---|---|---|---|
00102681-1.pdf | 2.01 MB | Adobe PDF | Anzeigen |
Sonstige Titel: | Von der individuellen zur organisatorischen benutzbaren Sicherheit : Partizipation und Interaktion für wirksame, effiziente und agile Berechtigungen | Autor/Autorin: | Bartsch, Steffen | BetreuerIn: | Bormann, Carsten ![]() |
1. GutachterIn: | Bormann, Carsten ![]() |
Weitere Gutachter:innen: | Sasse, Angela | Zusammenfassung: | Restrictions and permissions in information systems -- Authorization -- can cause problems for those interacting with the systems. Often, the problems materialize as an interference with the primary tasks, for example, when restrictions prevent the efficient completing of work and cause frustration. Conversely, the effectiveness can also be impacted when staff is forced to circumvent the measure to complete work -- typically sharing passwords among each other. This is the perspective of functional staff and the organization. There are further perspectives involved in the administration and development of the authorization measure. For instance, functional staff need to interact with policy makers who decide on the granting of additional permissions, and policy makers, in turn, interact with policy authors who actually implement changes. This thesis analyzes the diverse contexts in which authorization occurs, and systematically examines the problems that surround the different perspectives on authorization in organizational settings. Based on prior research and original research in secure agile development, eight principles to address the authorization problems are identified and explored through practical artifacts. |
Schlagwort: | Information Security; Usable Security; Human-Computer Interaction; Authorization; Access Control | Veröffentlichungsdatum: | 29-Jun-2012 | Dokumenttyp: | Dissertation | Zweitveröffentlichung: | no | URN: | urn:nbn:de:gbv:46-00102681-14 | Institution: | Universität Bremen | Fachbereich: | Fachbereich 03: Mathematik/Informatik (FB 03) |
Enthalten in den Sammlungen: | Dissertationen |
Seitenansichten
394
checked on 03.04.2025
Download(s)
98
checked on 03.04.2025
Google ScholarTM
Prüfe
Alle Ressourcen in diesem Repository sind urheberrechtlich geschützt.