The Security Challenges Emerging from the Technological Developments

A Practical Case Study of Organizational Awareness to the Security Risks
  • Paulo Costa
  • Ricardo Montenegro
  • Teresa Pereira
  • Pedro PintoEmail author


An increase number of cyberattacks on public and private organizations have been performed by exploiting their social and technological vulnerabilities. Mainly, these attacks aim to obtain illegal profits by extorting organizations, affecting their reputation and normal operation. In order to minimize the impact of these attacks, it is essential that these organizations not only implement preventive actions and efficient security mechanisms, but also continually evaluate the security risks their staff are exposed to when performing their job tasks. This paper presents a case study to assess the private and public Portuguese organizations security related practices followed by their staff. The results obtained by a conducted survey allow the analysis of behaviours and practices followed by the staff of these organizations and also allow to draw conclusions about their security procedures and risk awareness.


Cybersecurity Awareness Security practices 



  1. 1.
  2. 2.
    Petya ransomware outbreak: Here’s what you need to know.
  3. 3.
    (2017) Gartner says 8.4 billion connected “Things” will be in use in 2017, up 31 percent from 2016.
  4. 4.
  5. 5.
  6. 6.
    Vodafone Fundação Vodafone apresenta 1a Aldeia Inteligente de Montanha.
  7. 7.
    Hue products - meethue | Philips lighting.
  8. 8.
    Nest Nest learning thermostat | programs itself then pays for itself.
  9. 9.
    August smart lock | control and monitor your door from anywhere.
  10. 10.
    Fox-Brewster T (2016) Is this one company to blame for cameras exploited in record web attacks?.
  11. 11.
    ISO/IEC (2018) ISO/IEC 27000:2018.
  12. 12.
    Allen TA (2018) NIST special publication 800-series general information.
  13. 13.
    OECD OECD guidelines for the security of information systems and networks: towards a culture of security - OECD.
  14. 14.
    OECD Digital security risk management - OECD.
  15. 15.
    PORDATA PORDATA - empresas: total e por dimensão.
  16. 16.
    PORDATA PORDATA - pequenas e médias empresas em % do total de empresas: total e por dimensão.
  17. 17.
    DRE (2015) Resolução do conselho de ministros 36/2015, 2015-06-12.
  18. 18.
  19. 19.

Copyright information

© Springer Science+Business Media, LLC, part of Springer Nature 2019

Authors and Affiliations

  • Paulo Costa
    • 1
  • Ricardo Montenegro
    • 1
  • Teresa Pereira
    • 2
  • Pedro Pinto
    • 2
    • 3
    Email author
  1. 1.Instituto Politécnico de Viana do CasteloViana do CasteloPortugal
  2. 2.ARC4DigiTInstituto Politécnico de Viana do CasteloViana do CasteloPortugal
  3. 3.INESC TECPortoPortugal

Personalised recommendations