Instructor Resource
Kavanagh and Johnson, Human Resource Information Systems: Basics, Applications, and Future Directions, 4e
SAGE Publishing, 2018
5
SECURITY THREATS
What kind of threats are our organizational security practices protecting us from? In security, it is
important to “know your enemy.” The following are common security threats:
● Threat Sources
♦ Human error: When an HRIS is not well designed, developed, and maintained and
employees are not adequately trained, there is a high potential threat of security breaches.
♦ Other “Internal” Attackers: Many businesses hire contract workers, who work for the
organization for a short period. Contract workers usually gain temporary access to various
critical areas of an organization. This creates risks almost identical to those created by
employees.
♦ External Hackers: Another significant threat is the penetration of organizational computer
systems by hackers. A hacker is defined as someone who accesses a computer or computer
network unlawfully. Such attacks, often termed intrusions, can be particularly dangerous
because once the hacker has successfully bypassed the network security, he or she is free to
damage, manipulate, or simply steal data at will.
♦ Theft: The value of information can be much higher than the price of hardware and software.
With contemporary advances in technological developments, a relatively small computer
chip (e.g., a USB device) can easily store over 100 GB of data. For example, the State of
Hawaii’s HR department had medical records stolen when doctors’ offices of two doctors
servicing workers compensation claims were burglarized.