| 講演抄録/キーワード |
| 講演名 |
2016-07-15 14:30
テレワークにおける情報セキュリティ不安全行動に関する検討 ○畑島 隆・坂本泰久(NTT) LOIS2016-14 |
| 抄録 |
(和) |
テレワークはICT(情報通信技術)を活用した場所や時間にとらわれない柔軟な働き方と定義されている.テレワークにおいてもオフィスワークと同様に,会社の許可範囲を逸脱したり不正行為をしたりする意図はなくとも「ついつい」や「良かれと思って」業務実施したりすることはセキュリティインシデントを引き起こす要因となる.本研究は端末の所有主体が個人であることで情報セキュリティインシデント発生の要因に変化があると仮説のうえ,私有端末利用者に特徴的な行動モデルの提唱を目的としている.本稿ではテレワーク・モバイルワーク実施時において利用許可されていないデータを用いた業務実施行動を情報セキュリティ不安全行動と定義し,その行動モデルの仮説検証を目的とした質問紙調査について実施概要を述べる. |
| (英) |
Telework is defined as a flexible way of working that agnostic to the location and work time with taking advantage of the ICT (Information and Communication Technology). In telework as well as in office work, even if there is no intention of deviating or cheating the company rules, information security incidents can be caused by teleworking as ”carelessly” and ”with good intentions”. In this study, based on the hypothesis that the ownership entity of the information devices is a change factor of information security incidents caused by an individual, we aim to advocate a behavior model characteristic to private-owned device users. In this paper, we defined "information security unsafe acts" as work processes using unauthorized business data in telework and mobile work and also described an implementation plan overview of a questionnaire survey to evaluate the hypothesis of the behavior model. |
| キーワード |
(和) |
情報セキュリティ不安全行動 / テレワーク / モバイルワーク / BYOD / シャドーIT / / / |
| (英) |
information security unsafe acts / terework / mobile work / BYOD / shadow IT / / / |
| 文献情報 |
信学技報, vol. 116, no. 138, LOIS2016-14, pp. 11-16, 2016年7月. |
| 資料番号 |
LOIS2016-14 |
| 発行日 |
2016-07-08 (LOIS) |
| ISSN |
Print edition: ISSN 0913-5685 Online edition: ISSN 2432-6380 |
著作権に ついて |
技術研究報告に掲載された論文の著作権は電子情報通信学会に帰属します.(許諾番号:10GA0019/12GB0052/13GB0056/17GB0034/18GB0034) |
| PDFダウンロード |
LOIS2016-14 |