000000131 001__ 131
000000131 005__ 20130522141947.0
000000131 037__ $$aLERSSE-REPORT-2007-020
000000131 041__ $$aeng
000000131 088__ $$aLERSSE-REPORT-2007-002
000000131 100__ $$aDavid Botta
000000131 100__ $$aRodrigo Werlinger
000000131 100__ $$aAndré Gagné
000000131 100__ $$aKonstantin Beznosov 
000000131 100__ $$aLee Iverson
000000131 100__ $$aSidney Fels
000000131 100__ $$aBrian Fisher
000000131 245__ $$aUnderstanding IT Security Administration through a Field Study
000000131 260__ $$c2007-06-13
000000131 520__ $$aThe security administration of large organizations is exceptionally challenging due to the increasingly large numbers of application instances, resources, and users; the growing complexity and dynamics of business processes; and the spiralling volume of change that results from the interaction of the first two factors. Yet little is known about security administrators, their roles and responsibilities within organizations, and how effective existing tools and practices are at protecting organizations and employees while still allowing productive collaborative work. We report a descriptive qualitative study of IT security administrators, their tasks and tools, the organizations in which they reside, and their information technology. This field study comprises the first phase of the project Human, Organization, and Technology Centred Improvement of IT Security Administration. It used ethnographic methods to investigate security administrators in their work settings in order to understand and model their tasks as well as the effectiveness and usability of the tools they currently use to perform these tasks. It obtained inventories of tasks and tools sufficient for the development of models, theories, and guidelines of security administration.
000000131 6531_ $$ahot admin
000000131 6531_ $$afield study
000000131 6531_ $$aSecurity Management
000000131 6531_ $$aEthnography
000000131 6531_ $$aSecurity Tasks
000000131 6531_ $$aSecurity Tools
000000131 6531_ $$aUsable Security
000000131 6531_ $$aCollaboration
000000131 8560_ $$frodrigow@ece.ubc.ca
000000131 8564_ $$uhttp://lersse-dl.ece.ubc.ca/record/131/files/131.pdf$$yTransfer from CDS 0.99.7
000000131 909C4 $$pDavid Botta, Rodrigo Werlinger, André Gagné, Konstantin Beznosov, Lee Iverson, Sidney Fels and Brian Fisher, "Understanding Information Technology Security Administration through a Field Study", Laboratory for Education and Research in Secure Systems Engineering, University of British Columbia, 2007
000000131 980__ $$aREPORT