While many cyber security organizations urge the corporate world to use defence-in-depth to create vigilant network perimeters, the human factor is often overlooked. Security evaluation frameworks focus mostly on critical assets of an organization and technical aspects of prevailing risks. There is consequently no specific framework to identify, categorize, analyse and mitigate social engineering related risks. This paper identifies the requirement for such a framework through an in-depth investigation of an actual organization and extensive analysis of existing methodologies. On the basis of this a layered defence strategy SERA is developed, starting with the basic building blocks for social-engineering aware risk analysis. A chronological...
Cybersecurity is an integral part of the computer systems especially in current time where data is a...
Social engineering is a method of attack aimed at the state, organization, or individual. It focuses...
In the twenty-first century, globalisation made corporate boundaries invisible and difficult to mana...
This paper examines the role and value of information security awareness efforts in defending agains...
Social engineering attacks can be severe and difficult to detect before considerable damage is done....
Modern organisations are complex, socio-technical systems consisting of a mixture of physical infras...
This theses concerns with social engineering and defense against it. Social engineering attacks repr...
Social engineering denotes, within the realm of security, a type of attack against the human element...
Social engineering attacks have drawn more and more attention from both academia and industry, due t...
peer reviewedWe propose an operational framework for a social, technical and contextual analysis of ...
Social engineering attacks can be severe and hard to detect. Therefore, to prevent such attacks, org...
International audienceDuring this last decade, there have been major improvements in technological a...
In the 21st century, globalisation made corporate boundaries invisible and difficult to manage. This...
In the domain of Information security risk assessment really a complex decision-making process. Wher...
Abstract. We propose an operational framework for a social, technical and contextual analysis of sec...
Cybersecurity is an integral part of the computer systems especially in current time where data is a...
Social engineering is a method of attack aimed at the state, organization, or individual. It focuses...
In the twenty-first century, globalisation made corporate boundaries invisible and difficult to mana...
This paper examines the role and value of information security awareness efforts in defending agains...
Social engineering attacks can be severe and difficult to detect before considerable damage is done....
Modern organisations are complex, socio-technical systems consisting of a mixture of physical infras...
This theses concerns with social engineering and defense against it. Social engineering attacks repr...
Social engineering denotes, within the realm of security, a type of attack against the human element...
Social engineering attacks have drawn more and more attention from both academia and industry, due t...
peer reviewedWe propose an operational framework for a social, technical and contextual analysis of ...
Social engineering attacks can be severe and hard to detect. Therefore, to prevent such attacks, org...
International audienceDuring this last decade, there have been major improvements in technological a...
In the 21st century, globalisation made corporate boundaries invisible and difficult to manage. This...
In the domain of Information security risk assessment really a complex decision-making process. Wher...
Abstract. We propose an operational framework for a social, technical and contextual analysis of sec...
Cybersecurity is an integral part of the computer systems especially in current time where data is a...
Social engineering is a method of attack aimed at the state, organization, or individual. It focuses...
In the twenty-first century, globalisation made corporate boundaries invisible and difficult to mana...