Impact of digital nudging on information security behavior: An experimental study on framing and priming in cybersecurity

Purpose: Phishing attacks are the most common cyber threats targeted at users. Digital nudging in the form of framing and priming may reduce user susceptibility to phishing. This research focuses on two types of digital nudging, framing and priming, and examines the impact of framing and priming on...

Full description

Saved in:
Bibliographic Details
Main Authors: SHARMA, Kavya, ZHAN, Xinhui, NAH, Fiona Fui-hoon, SIAU, Keng, CHENG, Maggie X.
Format: text
Language:English
Published: Institutional Knowledge at Singapore Management University 2021
Subjects:
Online Access:https://ink.library.smu.edu.sg/sis_research/9526
https://ink.library.smu.edu.sg/context/sis_research/article/10526/viewcontent/10_1108_ocj_03_2021_0009_pvoa_cc_by.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Singapore Management University
Language: English
id sg-smu-ink.sis_research-10526
record_format dspace
spelling sg-smu-ink.sis_research-105262024-11-15T07:35:39Z Impact of digital nudging on information security behavior: An experimental study on framing and priming in cybersecurity SHARMA, Kavya ZHAN, Xinhui NAH, Fiona Fui-hoon SIAU, Keng CHENG, Maggie X. Purpose: Phishing attacks are the most common cyber threats targeted at users. Digital nudging in the form of framing and priming may reduce user susceptibility to phishing. This research focuses on two types of digital nudging, framing and priming, and examines the impact of framing and priming on users' behavior (i.e. action) in a cybersecurity setting. It draws on prospect theory, instance-based learning theory and dual-process theory to generate the research hypotheses. Design/methodology/approach: A 3 × 2 experimental study was carried out to test the hypotheses. The experiment consisted of three levels for framing (i.e. no framing, negative framing and positive framing) and two levels for priming (i.e. with and without priming). Findings: The findings suggest that priming users to information security risks reduces their risk-taking behavior, whereas positive and negative framing of information security messages regarding potential consequences of the available choices do not change users' behavior. The results also indicate that risk-averse cybersecurity behavior is associated with greater confidence with the action, greater perceived severity of cybersecurity risks, lower perceived susceptibility to cybersecurity risks resulting from the action and lower trust in the download link. Originality/value: This research shows that digital nudging in the form of priming is an effective way to reduce users' exposure to cybersecurity risks. 2021-10-01T07:00:00Z text application/pdf https://ink.library.smu.edu.sg/sis_research/9526 info:doi/10.1108/OCJ-03-2021-0009 https://ink.library.smu.edu.sg/context/sis_research/article/10526/viewcontent/10_1108_ocj_03_2021_0009_pvoa_cc_by.pdf http://creativecommons.org/licenses/by-nc-nd/4.0/ Research Collection School Of Computing and Information Systems eng Institutional Knowledge at Singapore Management University Cybersecurity framing priming digital nudging information security user behavior Databases and Information Systems Information Security
institution Singapore Management University
building SMU Libraries
continent Asia
country Singapore
Singapore
content_provider SMU Libraries
collection InK@SMU
language English
topic Cybersecurity
framing
priming
digital nudging
information security
user behavior
Databases and Information Systems
Information Security
spellingShingle Cybersecurity
framing
priming
digital nudging
information security
user behavior
Databases and Information Systems
Information Security
SHARMA, Kavya
ZHAN, Xinhui
NAH, Fiona Fui-hoon
SIAU, Keng
CHENG, Maggie X.
Impact of digital nudging on information security behavior: An experimental study on framing and priming in cybersecurity
description Purpose: Phishing attacks are the most common cyber threats targeted at users. Digital nudging in the form of framing and priming may reduce user susceptibility to phishing. This research focuses on two types of digital nudging, framing and priming, and examines the impact of framing and priming on users' behavior (i.e. action) in a cybersecurity setting. It draws on prospect theory, instance-based learning theory and dual-process theory to generate the research hypotheses. Design/methodology/approach: A 3 × 2 experimental study was carried out to test the hypotheses. The experiment consisted of three levels for framing (i.e. no framing, negative framing and positive framing) and two levels for priming (i.e. with and without priming). Findings: The findings suggest that priming users to information security risks reduces their risk-taking behavior, whereas positive and negative framing of information security messages regarding potential consequences of the available choices do not change users' behavior. The results also indicate that risk-averse cybersecurity behavior is associated with greater confidence with the action, greater perceived severity of cybersecurity risks, lower perceived susceptibility to cybersecurity risks resulting from the action and lower trust in the download link. Originality/value: This research shows that digital nudging in the form of priming is an effective way to reduce users' exposure to cybersecurity risks.
format text
author SHARMA, Kavya
ZHAN, Xinhui
NAH, Fiona Fui-hoon
SIAU, Keng
CHENG, Maggie X.
author_facet SHARMA, Kavya
ZHAN, Xinhui
NAH, Fiona Fui-hoon
SIAU, Keng
CHENG, Maggie X.
author_sort SHARMA, Kavya
title Impact of digital nudging on information security behavior: An experimental study on framing and priming in cybersecurity
title_short Impact of digital nudging on information security behavior: An experimental study on framing and priming in cybersecurity
title_full Impact of digital nudging on information security behavior: An experimental study on framing and priming in cybersecurity
title_fullStr Impact of digital nudging on information security behavior: An experimental study on framing and priming in cybersecurity
title_full_unstemmed Impact of digital nudging on information security behavior: An experimental study on framing and priming in cybersecurity
title_sort impact of digital nudging on information security behavior: an experimental study on framing and priming in cybersecurity
publisher Institutional Knowledge at Singapore Management University
publishDate 2021
url https://ink.library.smu.edu.sg/sis_research/9526
https://ink.library.smu.edu.sg/context/sis_research/article/10526/viewcontent/10_1108_ocj_03_2021_0009_pvoa_cc_by.pdf
_version_ 1816859122931335168