Skoči na glavni sadržaj

Izvorni znanstveni članak

Development of Social Engineering Research Tool on College Student Population: Behavioural Cognitive Internet Security Questionnaire (BCISQ)

Tena Velki orcid id orcid.org/0000-0002-9529-8959 ; Fakultet za odgojne i obrazovne znanosti Sveučilišta J. J. Strossmayera u Osijeku, Republika Hrvatska
Krešimir Šolić ; Medicinski fakultet Sveučilišta J. J. Strossmayera u Osijeku, Republika Hrvatska


Puni tekst: hrvatski pdf 420 Kb

str. 341-355

preuzimanja: 266

citiraj


Sažetak

The rapid development of digital technology has led to specific problems, especially in the information
security area. Social engineering, which involves manipulating people to disclose confidential information,
attacks computer system users as the weakest security link. The user contributes greatly to this
phenomenon through his reckless and conscienceless behaviour. Raising users' awareness of social
engineers' potential tricks against them has proven to be one of the most effective security measures. In
order to be able to oppose social engineering at all, it is necessary to have a valid and reliable method
of assessing the risky behaviour and level of information security awareness of the typical user. The
research aimed to develop and validate a new Croatian version of a measurement instrument for social
engineering research: the Behavioural-Cognitive Internet Security Questionnaire (BCISQ). Students
of the J. J. Strossmayer University in Osijek (N=287) participated in this study. They have completed
the BCISQ online through specially designed software. The BCISQ consists of 4 subscales, the first
two examining the behavioural component (self-assessment and simulation of risky online behaviour)
and the other two measuring the cognitive component of cybersecurity (awareness of online risks and
the importance of safe computer systems use). The results showed that real (simulated) risky online
behaviour of users is not related to their own assessments; that is, their self-assessments differ from
their actual behaviour in the virtual world. Moreover, although most users have a quite high level of
awareness of the potential online risks, a large number of them have entered their email address (20.9
%), and an even greater number have left their password to access the same (61.7 %). The BCISQ has
proven to be a reliable and valid measurement instrument with good psychometric characteristics. It can
be used for reliable assessment of the online behaviour and the security awareness level of informationcommunication
system's users.

Ključne riječi

: internet security, data privacy, user behaviour, questionnaire, BCISQ.

Hrčak ID:

249659

URI

https://hrcak.srce.hr/249659

Datum izdavanja:

23.12.2020.

Podaci na drugim jezicima: hrvatski

Posjeta: 1.332 *