Bruce Schneier | |||||||||||||||
Schneier on SecurityA blog covering security and security technology. « Crime-Facilitating Speech | Main | DUI Cases Thrown Out Due to Closed-Source Breathalyzer » September 15, 2005Research in Behavioral Risk AnalysisI very am interested in this kind of research: Network Structure, Behavioral Considerations and Risk Management in Interdependent Security Games Posted on September 15, 2005 at 7:05 AM • 11 Comments To receive these entries once a month by e-mail, sign up for the Crypto-Gram Newsletter. "computer science, decision and management sciences, economics, psychology, risk management, and policy analysis" Why is it that military strategists are not included in the research of issues that have been a concern for physical security practicioners for ~25000 years. Samples of phys sec 'IDS' issues: Recognizing that the above examples are radical oversimplifications, military strategy, is for the most part, directly applicable to network security, especially at the high level, policy & procedure level. Aside from that, the research does look interesting. Are National Science Foundations research outputs in the public domain? Posted by: Yvan Boily at September 15, 2005 8:16 AM I hope I'm wrong, but it looks kinda like another taxpayer-funded grandiose research project to tell us what we already know, e.g., that people make decisions based on distorted perceptions of real-world risk. Posted by: JD at September 15, 2005 8:45 AM This does sound interesting, and quite timely. I hope they spend a good deal of time evaluating the rising popularity/phenomenon of the American "rugged individualist" (nihilist) that advocates for the destruction of institutions as necessary for future improvement. Many years ago I was approached by the head of a similar project with a goal to "advance our understanding of decision-making under risk and uncertainty" to improve network security systems. Unfortunately, that project started with a number of hypotheses based on the question "why do computers make mistakes" instead of the more realistic "why do people make mistakes and build them into their systems?" Posted by: Davi Ottenheimer at September 15, 2005 9:09 AM I predict that interdependent security (IDS) games will soon be replaced by internal predictive security (IPS) games that will eliminate the false dependencies ;-) Posted by: reanimated at September 15, 2005 11:44 AM Interesting to see the NSF step up and fund this. I wonder how their current level of investment in such topics compares to what is was when, say, Hogarth and Reder's "Rational Choice" collection was published. I may be biased on this, but it looks like a little more up-front money in basic research could have paid some handsome dividends. Posted by: Chris Walsh at September 15, 2005 12:57 PM @ Davi Ottenheimer "rising popularity/phenomenon of the American "rugged individualist" (nihilist) that advocates for the destruction of institutions as necessary for future improvement" There might be an easy explination to this trend, Pork Barrels and greasing squeaky wheels. More realisticaly their has been research done about the size of an organisation and it's effectivness under certain conditions. The conclusion have always been that above a certain size all entities become progresivly less effective, often crossing over the line when they start commiting more harn than good Posted by: Clive Robinson at September 15, 2005 2:22 PM I feel compelled to mention my school's work in these subjects; specifically, experimental political and social sciences and economics: Caltech has been leading a lot of the experimental research in these areas, and the work they've done has lead to real-world results--the most successful of which is the California Pollution Credit program. The pollution credit program is a system to optimize use of a common resource (air cleanliness) by using a computer-assisted market. More applied public policy research: Posted by: Evan Murphy at September 15, 2005 3:35 PM I assume from one of the above comments that survivalists/nihilists believe spelling is another federal-commie plot :-) Roberto/. Posted by: roberton at September 16, 2005 7:00 AM Just a note -- I cannot post comment on the latest thread about DUI being thrown out due to no breathalyzer. Posted by: Tim Vail at September 16, 2005 8:20 AM Will participation in this provide me with the information I need to get off of my new General Anxiety Disorder and Social Anxiety Disorder medication? Posted by: Tethered Rose at September 24, 2005 1:37 PM We are talking Interdependent Security, which would involve Risk Analysis. Posted by: sk at January 24, 2007 1:58 AM Post a comment
Powered by Movable Type. Photo at top by Steve Woit.
Schneier.com is a personal website. Opinions expressed are not necessarily those of BT. |
|
Comments