Modelling the ethical priorities influencing decision-making in cybersecurity contexts

Bakhtiar Sadeghi, Deborah Richards, Paul Formosa, Mitchell W. McEwan, Muhammad Hassan Ali Bajwa, M. Hitchens, M. Ryan
{"title":"Modelling the ethical priorities influencing decision-making in cybersecurity contexts","authors":"Bakhtiar Sadeghi, Deborah Richards, Paul Formosa, Mitchell W. McEwan, Muhammad Hassan Ali Bajwa, M. Hitchens, M. Ryan","doi":"10.1108/ocj-09-2022-0015","DOIUrl":null,"url":null,"abstract":"Purpose Cybersecurity vulnerabilities are often due to human users acting according to their own ethical priorities. With the goal of providing tailored training to cybersecurity professionals, the authors conducted a study to uncover profiles of human factors that influence which ethical principles are valued highest following exposure to ethical dilemmas presented in a cybersecurity game.Design/methodology/approach The authors’ game first sensitises players (cybersecurity trainees) to five cybersecurity ethical principles (beneficence, non-maleficence, justice, autonomy and explicability) and then allows the player to explore their application in multiple cybersecurity scenarios. After playing the game, players rank the five ethical principles in terms of importance. A total of 250 first-year cybersecurity students played the game. To develop profiles, the authors collected players' demographics, knowledge about ethics, personality, moral stance and values.Findings The authors built models to predict the importance of each of the five ethical principles. The analyses show that, generally, the main driver influencing the priority given to specific ethical principles is cultural background, followed by the personality traits of extraversion and conscientiousness. The importance of the ingroup was also a prominent factor.Originality/value Cybersecurity professionals need to understand the impact of users' ethical choices. To provide ethics training, the profiles uncovered will be used to build artificially intelligent (AI) non-player characters (NPCs) to expose the player to multiple viewpoints. The NPCs will adapt their training according to the predicted players’ viewpoint.","PeriodicalId":107089,"journal":{"name":"Organizational Cybersecurity Journal: Practice, Process and People","volume":"13 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2023-05-24","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Organizational Cybersecurity Journal: Practice, Process and People","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1108/ocj-09-2022-0015","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

Abstract

Purpose Cybersecurity vulnerabilities are often due to human users acting according to their own ethical priorities. With the goal of providing tailored training to cybersecurity professionals, the authors conducted a study to uncover profiles of human factors that influence which ethical principles are valued highest following exposure to ethical dilemmas presented in a cybersecurity game.Design/methodology/approach The authors’ game first sensitises players (cybersecurity trainees) to five cybersecurity ethical principles (beneficence, non-maleficence, justice, autonomy and explicability) and then allows the player to explore their application in multiple cybersecurity scenarios. After playing the game, players rank the five ethical principles in terms of importance. A total of 250 first-year cybersecurity students played the game. To develop profiles, the authors collected players' demographics, knowledge about ethics, personality, moral stance and values.Findings The authors built models to predict the importance of each of the five ethical principles. The analyses show that, generally, the main driver influencing the priority given to specific ethical principles is cultural background, followed by the personality traits of extraversion and conscientiousness. The importance of the ingroup was also a prominent factor.Originality/value Cybersecurity professionals need to understand the impact of users' ethical choices. To provide ethics training, the profiles uncovered will be used to build artificially intelligent (AI) non-player characters (NPCs) to expose the player to multiple viewpoints. The NPCs will adapt their training according to the predicted players’ viewpoint.
在网络安全环境下影响决策的道德优先级建模
网络安全漏洞通常是由于人类用户根据自己的道德优先级行事。为了给网络安全专业人员提供量身定制的培训,作者进行了一项研究,揭示了在网络安全游戏中出现道德困境后,影响道德原则最受重视的人为因素。作者的游戏首先让玩家(网络安全学员)对五项网络安全伦理原则(仁慈、非恶意、正义、自主和可解释性)敏感,然后让玩家探索它们在多种网络安全场景中的应用。在玩完游戏后,玩家会根据重要性对这五条道德原则进行排序。共有250名网络安全一年级学生玩了这个游戏。为了创建个人资料,作者收集了玩家的人口统计数据、道德知识、个性、道德立场和价值观。作者建立了模型来预测五项道德原则的重要性。分析表明,一般来说,影响特定伦理原则优先级的主要驱动因素是文化背景,其次是外向性和尽责性的人格特征。内部团体的重要性也是一个突出的因素。网络安全专业人员需要了解用户道德选择的影响。为了提供道德培训,所发现的个人资料将用于构建人工智能(AI)非玩家角色(npc),以向玩家展示多个视角。npc会根据预测的玩家观点来调整训练。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信