IRMA-International.org: Creator of Knowledge
Information Resources Management Association
Advancing the Concepts & Practices of Information Resources Management in Modern Organizations

Toward Human-Centric Cybersecurity: Case Study Insights and the HuCRAF Model

Toward Human-Centric Cybersecurity: Case Study Insights and the HuCRAF Model
View Sample PDF
Author(s): Olumide O. Malomo (Virginia State University, USA), Shanzhen Gao (Virginia State University, USA), Adeyemi A. Adekoya (Virginia State University, USA), Aurelia M. Donald (Virginia State University, USA), Theodore Andrews Jr. (Virginia State University, USA), Julian D. Allagan (Elizabeth City State University, USA), Weizheng Gao (Elizabeth City State University, USA), Jianning Su (Perimeter College, Georgia State University, USA)and Ephrem Eyob (Virginia State University, USA)
Copyright: 2025
Volume: 1
Issue: 1
Pages: 61
Source title: International Journal of Cybersecurity and Risk Assessment (IJCRA)
Editor(s)-in-Chief: Mohammed Amin Almaiah (University of Jordan, Jordan)
DOI: 10.4018/IJCRA.389592

Purchase

View Toward Human-Centric Cybersecurity: Case Study Insights and the HuCRAF Model on the publisher's website for pricing and purchasing information.

Abstract

Human vulnerabilities contribute to organizational data breaches across various sectors. Between 2013 and 2024, despite emerging technology and innovations in cybersecurity defenses, recurring patterns such as poor communication, leadership lapses, and decision-making under pressure remain central to the causation of cybersecurity breaches. Using the Dirty Dozen human error framework, the study identifies systemic behavioral risks often overlooked in cybersecurity governance. The authors propose the Human-Centric Risk Assessment Framework (HuCRAF) to fill this void. HuCRAF offers six thematic pillars and six assessment stages to embed behavioral risk into cybersecurity governance. The findings support a shift toward a behavior-informed cybersecurity strategy and a platform for future studies to enhance HuCRAF through decision modeling and algorithmic risk discovery. The recommendations include adopting HuCRAF, measuring security culture, conducting breach simulations, and managing legacy systems.

Related Content

Kenneth David Strang, Bulcsú Székely. © 2026. 16 pages.
Colin L. Read. © 2025. 18 pages.
Olumide O Malomo, Shanzhen Gao, Adeyemi A. Adekoya, Aurelia M. Donald, Theodore Andrews Jr., Julian D. Allagan, Weizheng Gao, Jianning Su, Ephrem Eyob. © 2025. 61 pages.
Eriona Çela, Mathias Mbu Fonkam, Rajasekhara Mouly Potluri. © 2024. 19 pages.
Adeyemi Abel Ajibesin, Precious Prince Diden. © 2022. 23 pages.
Chandana Jayalath, Iresha Gamage. © 2022. 16 pages.
Ji Li, Xiaolong Tao, Ting Gong, Xin Li. © 2022. 12 pages.
Body Bottom