Mitigating Insider Threats in Cybersecurity: A Design Thinking Approach

nbnfi-fe2026033024160.pdf
Lopullinen julkaistu versio - 1.04 MB
https://creativecommons.org/licenses/by/4.0/
Lataukset44

Kuvaus

© 2025 Copyright for this paper by its authors. Use permitted under Creative Commons License Attribution 4.0 International (CC BY 4.0).
Insider threats in cybersecurity (ITC) are increasing in frequency and impact, while current technical, psychological, and organizational approaches remain insufficient. These strategies often address narrow aspects, such as system vulnerabilities or individual behavior, without offering a holistic, multidisciplinary solution. This study presents DESTIC, a design thinking (DT) framework to study insider threats. Unlike existing research emphasizing only the "Empathize" phase, DESTIC engages all six DT stages: empathize, define, ideate, prototype, test, and implement to uncover root causes and develop targeted interventions. We apply organizational design workshops, a methodology that combines diverse stakeholders to co-create solutions by examining behavioral, technical, and organizational factors. This study offers a structured, human-centered approach to understanding and proactively preventing insider threats through iterative, collaborative cybersecurity innovation.

Emojulkaisu

Proceedings of the Annual Doctoral Symposium of Computer Science 2025

ISBN

ISSN

1613-0073

Aihealue

Kausijulkaisu

CEUR workshop proceedings|4181

OKM-julkaisutyyppi

A4 Vertaisarvioitu artikkeli konferenssijulkaisussa