« New cyber strategy needs to be tougher | Main | Eliminating opportunities for fraud »

Why staff break security rules

I've just got back from speaking in Athens at HAISA 2009, the leading international symposium on the human aspects of information security. Picking up today's Computer Weekly, my eye was naturally drawn to an interesting article on why staff break security rules.

CW reports that researchers at Nottingham Trent University have actually discovered that many staff will knowingly break or bend security rules in order to perform a job more efficiently, to help a colleague, or to provide good customer service. They also noted that complacency can set in when staff have been working in the same area for a long time and they know they will "get away with it".

Of course they could have saved a lot of time by simply asking me or any experienced security or safety manager. We've known all this for decades. Perhaps, as Basil Fawlty might put it, the researchers might be qualified to set up a course in the not-too-subtle art of stating the bleeding obvious.

| More

TrackBack

TrackBack URL for this entry:
http://www.computerweekly.com/cgi-bin/mt/mt-tb.cgi/56302

Post a comment

(If you haven't left a comment here before, you may need to be approved by the site owner before your comment will appear. Until then, it won't appear on the entry. Thanks for waiting.)

About

This page contains a single entry from the blog posted on June 29, 2009 8:05 PM.

The previous post in this blog was New cyber strategy needs to be tougher.

The next post in this blog is Eliminating opportunities for fraud .

Many more can be found on the main index page or by looking through the archives.