More than ever before, the economic success of companies depends on the use of information and communication technologies. Along with this development, cyber security plays a vital role to ensure the continuous and secure operation of critical applications and IT-services. The human factor represents one especially important aspect for ensuring cyber security in organizations, which has taken a turn for the worse in recent time. Security awareness activities, such as security training, newsletters or quizzes, are often performed to try to improve the situation, but the effects are slow to materialize and often do not bring lasting change. This paper therefore gets to the root of the problem using a different approach, which is centered around the people involved. The introduced framework combines the domains of design thinking and information security and presents a creative and human-centered way towards cyber security. We highlight building blocks, tools and techniques, which support the implementation of the presented framework. In order to demonstrate the applicability of the approach, we present our evaluation results of start-up company, which used our approach.
CITATION STYLE
König, L., & Tjoa, S. (2022). A Design Thinking Approach on Information Security. In Lecture Notes in Networks and Systems (Vol. 450 LNNS, pp. 503–515). Springer Science and Business Media Deutschland GmbH. https://doi.org/10.1007/978-3-030-99587-4_42
Mendeley helps you to discover research relevant for your work.