Information Security Threats and Working from Home Culture: Taxonomy, Risk Assessment and Solutions

Sensors (Basel). 2023 Apr 15;23(8):4018. doi: 10.3390/s23084018.

Abstract

During the COVID-19 pandemic, most organizations were forced to implement a work-from-home policy, and in many cases, employees have not been expected to return to the office on a full-time basis. This sudden shift in the work culture was accompanied by an increase in the number of information security-related threats which organizations were unprepared for. The ability to effectively address these threats relies on a comprehensive threat analysis and risk assessment and the creation of relevant asset and threat taxonomies for the new work-from-home culture. In response to this need, we built the required taxonomies and performed a thorough analysis of the threats associated with this new work culture. In this paper, we present our taxonomies and the results of our analysis. We also examine the impact of each threat, indicate when it is expected to occur, describe the various prevention methods available commercially or proposed in academic research, and present specific use cases.

Keywords: cyber security; risk assessment; taxonomy; threats; work from home (WFH).

MeSH terms

  • COVID-19*
  • Computer Security
  • Humans
  • Pandemics* / prevention & control
  • Risk Assessment

Grants and funding

This research received no external funding.