Snyman, DirkKruger, Hennie A.2020-04-232020-04-232020Snyman, D. & Kruger, H.A. 2020. External contextual factors in information security behaviour. Proceedings of the 6th International Conference on Information Systems Security and Privacy (ICISSP 2020): 185-194. [https://doi.org/ 10.5220/0009142201850194]978-989-758-399-5http://hdl.handle.net/10394/34571https://www.insticc.org/Primoris/Resources/PaperPdf.ashx?idPaper=91422https://doi.org/ 10.5220/0009142201850194Human behaviour is often considered to be irrational, difficult to understand, and challenging to manage. This phenomenon has a direct impact on the way in which humans behave when confronted with information security which, in turn, complicates how security is to be managed. This research attempts to investigate the role that contextual factors play in how humans behave, specifically with regards to information security. Contextual factors are identified that influence human behaviour in general. These factors are conceptualised in relation to existing models of behaviour and subsequently mapped to information security behaviour. A practical research exercise, relating to information security behaviour, is conducted with a university residence as the contextual environment. The specific contextual factors, and how they relate to information security, are discussed. Information security behavioural threshold analysis is employed to evaluate the impact of the identified contextual factors on the residence’s security behaviour. The results are reflected upon, based on the results from the threshold analysis. The paper concludes by highlighting the contributions that were made towards understanding contextual factors in information securityenInformation security behaviourContextual factorsHuman factor in information securityExternal contextual factors in information security behaviourPresentation