Security, Availability, and Multiple Information Sources: Exploring Update Behavior of System Administrators
Christian Tiefenau, Maximilian H\"aring, Katharina Krombholz, Emanuel, von Zezschwitz

TL;DR
This paper investigates system administrators' update behaviors and challenges in maintaining security and availability in complex environments, highlighting the need for more usable monitoring and update processes.
Contribution
It provides an empirical analysis of administrators' attitudes and practices regarding updates, based on interviews and surveys, revealing key obstacles and areas for improvement.
Findings
Administrators find it difficult to assess update consequences.
Downtime and lack of information hinder update processes.
Usable monitoring tools are essential for scalable security.
Abstract
Experts agree that keeping systems up to date is a powerful security measure. Previous work found that users sometimes explicitly refrain from performing timely updates, e.g., due to bad experiences which has a negative impact on end-user security. Another important user group has been investigated less extensively: system administrators, who are responsible for keeping complex and heterogeneous system landscapes available and secure. In this paper, we sought to understand administrators' behavior, experiences, and attitudes regarding updates in a corporate environment. Based on the results of an interview study, we developed an online survey and quantified common practices and obstacles (e.g., downtime or lack of information about updates). The findings indicate that even experienced administrators struggle with update processes as the consequences of an update are sometimes hard to…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsInformation and Cyber Security · Advanced Malware Detection Techniques · Digital and Cyber Forensics
