{"id":"https://openalex.org/W4410126704","doi":"https://doi.org/10.1080/19393555.2025.2498472","title":"Information security risk management tools in the air traffic management domain: what are practitioners\u2019 needs?","display_name":"Information security risk management tools in the air traffic management domain: what are practitioners\u2019 needs?","publication_year":2025,"publication_date":"2025-05-06","ids":{"openalex":"https://openalex.org/W4410126704","doi":"https://doi.org/10.1080/19393555.2025.2498472"},"language":"en","primary_location":{"id":"doi:10.1080/19393555.2025.2498472","is_oa":true,"landing_page_url":"https://doi.org/10.1080/19393555.2025.2498472","pdf_url":null,"source":{"id":"https://openalex.org/S39280739","display_name":"Information Security Journal A Global Perspective","issn_l":"1939-3547","issn":["1939-3547","1939-3555"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320547","host_organization_name":"Taylor & Francis","host_organization_lineage":["https://openalex.org/P4310320547"],"host_organization_lineage_names":["Taylor & Francis"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Information Security Journal: A Global Perspective","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://doi.org/10.1080/19393555.2025.2498472","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100878285","display_name":"Simon Andersson","orcid":"https://orcid.org/0000-0002-4057-9454"},"institutions":[{"id":"https://openalex.org/I190632392","display_name":"Lule\u00e5 University of Technology","ror":"https://ror.org/016st3p78","country_code":"SE","type":"education","lineage":["https://openalex.org/I190632392"]}],"countries":["SE"],"is_corresponding":true,"raw_author_name":"Simon Andersson","raw_affiliation_strings":["Lule\u00e5 University of Technology"],"affiliations":[{"raw_affiliation_string":"Lule\u00e5 University of Technology","institution_ids":["https://openalex.org/I190632392"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009915287","display_name":"Erik Bergstr\u00f6m","orcid":"https://orcid.org/0000-0002-1436-2980"},"institutions":[{"id":"https://openalex.org/I94616838","display_name":"J\u00f6nk\u00f6ping University","ror":"https://ror.org/03t54am93","country_code":"SE","type":"education","lineage":["https://openalex.org/I94616838"]}],"countries":["SE"],"is_corresponding":false,"raw_author_name":"Erik Bergstr\u00f6m","raw_affiliation_strings":["J\u00f6nk\u00f6ping University"],"affiliations":[{"raw_affiliation_string":"J\u00f6nk\u00f6ping University","institution_ids":["https://openalex.org/I94616838"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5024279614","display_name":"Martin Lundgren","orcid":"https://orcid.org/0000-0003-1692-5721"},"institutions":[{"id":"https://openalex.org/I205158640","display_name":"University of Sk\u00f6vde","ror":"https://ror.org/051mrsz47","country_code":"SE","type":"education","lineage":["https://openalex.org/I205158640"]}],"countries":["SE"],"is_corresponding":false,"raw_author_name":"Martin Lundgren","raw_affiliation_strings":["University of Sk\u00f6vde"],"affiliations":[{"raw_affiliation_string":"University of Sk\u00f6vde","institution_ids":["https://openalex.org/I205158640"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5054254915","display_name":"Karin Bernsmed","orcid":"https://orcid.org/0000-0001-9109-5401"},"institutions":[{"id":"https://openalex.org/I4387930215","display_name":"SINTEF Digital","ror":"https://ror.org/028m52w57","country_code":null,"type":"facility","lineage":["https://openalex.org/I173888879","https://openalex.org/I4387930215"]},{"id":"https://openalex.org/I173888879","display_name":"SINTEF","ror":"https://ror.org/01f677e56","country_code":"NO","type":"facility","lineage":["https://openalex.org/I173888879"]}],"countries":["NO"],"is_corresponding":false,"raw_author_name":"Karin Bernsmed","raw_affiliation_strings":["SINTEF Digital"],"affiliations":[{"raw_affiliation_string":"SINTEF Digital","institution_ids":["https://openalex.org/I173888879","https://openalex.org/I4387930215"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5091790961","display_name":"Guillaume Bour","orcid":"https://orcid.org/0000-0003-4456-6279"},"institutions":[{"id":"https://openalex.org/I173888879","display_name":"SINTEF","ror":"https://ror.org/01f677e56","country_code":"NO","type":"facility","lineage":["https://openalex.org/I173888879"]},{"id":"https://openalex.org/I4387930215","display_name":"SINTEF Digital","ror":"https://ror.org/028m52w57","country_code":null,"type":"facility","lineage":["https://openalex.org/I173888879","https://openalex.org/I4387930215"]}],"countries":["NO"],"is_corresponding":false,"raw_author_name":"Guillaume Bour","raw_affiliation_strings":["SINTEF Digital"],"affiliations":[{"raw_affiliation_string":"SINTEF Digital","institution_ids":["https://openalex.org/I173888879","https://openalex.org/I4387930215"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5100878285"],"corresponding_institution_ids":["https://openalex.org/I190632392"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.10401005,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"34","issue":"6","first_page":"561","last_page":"578"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T13777","display_name":"Cognitive and psychological constructs research","score":0.9907000064849854,"subfield":{"id":"https://openalex.org/subfields/3207","display_name":"Social Psychology"},"field":{"id":"https://openalex.org/fields/32","display_name":"Psychology"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},"topics":[{"id":"https://openalex.org/T13777","display_name":"Cognitive and psychological constructs research","score":0.9907000064849854,"subfield":{"id":"https://openalex.org/subfields/3207","display_name":"Social Psychology"},"field":{"id":"https://openalex.org/fields/32","display_name":"Psychology"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9478999972343445,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10799","display_name":"Data Visualization and Analytics","score":0.945900022983551,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6956731081008911},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5420023798942566},{"id":"https://openalex.org/keywords/information-security-management","display_name":"Information security management","score":0.5012829303741455},{"id":"https://openalex.org/keywords/risk-management","display_name":"Risk management","score":0.461175799369812},{"id":"https://openalex.org/keywords/security-management","display_name":"Security management","score":0.45962536334991455},{"id":"https://openalex.org/keywords/security-information-and-event-management","display_name":"Security information and event management","score":0.43600988388061523},{"id":"https://openalex.org/keywords/domain","display_name":"Domain (mathematical analysis)","score":0.4298780858516693},{"id":"https://openalex.org/keywords/cloud-computing-security","display_name":"Cloud computing security","score":0.25946229696273804},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.21673694252967834},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.11552467942237854}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6956731081008911},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5420023798942566},{"id":"https://openalex.org/C148976360","wikidata":"https://www.wikidata.org/wiki/Q1662500","display_name":"Information security management","level":5,"score":0.5012829303741455},{"id":"https://openalex.org/C32896092","wikidata":"https://www.wikidata.org/wiki/Q189447","display_name":"Risk management","level":2,"score":0.461175799369812},{"id":"https://openalex.org/C83163435","wikidata":"https://www.wikidata.org/wiki/Q3954104","display_name":"Security management","level":2,"score":0.45962536334991455},{"id":"https://openalex.org/C103377522","wikidata":"https://www.wikidata.org/wiki/Q3493999","display_name":"Security information and event management","level":4,"score":0.43600988388061523},{"id":"https://openalex.org/C36503486","wikidata":"https://www.wikidata.org/wiki/Q11235244","display_name":"Domain (mathematical analysis)","level":2,"score":0.4298780858516693},{"id":"https://openalex.org/C184842701","wikidata":"https://www.wikidata.org/wiki/Q370563","display_name":"Cloud computing security","level":3,"score":0.25946229696273804},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.21673694252967834},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.11552467942237854},{"id":"https://openalex.org/C10138342","wikidata":"https://www.wikidata.org/wiki/Q43015","display_name":"Finance","level":1,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1080/19393555.2025.2498472","is_oa":true,"landing_page_url":"https://doi.org/10.1080/19393555.2025.2498472","pdf_url":null,"source":{"id":"https://openalex.org/S39280739","display_name":"Information Security Journal A Global Perspective","issn_l":"1939-3547","issn":["1939-3547","1939-3555"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320547","host_organization_name":"Taylor & Francis","host_organization_lineage":["https://openalex.org/P4310320547"],"host_organization_lineage_names":["Taylor & Francis"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Information Security Journal: A Global Perspective","raw_type":"journal-article"},{"id":"pmh:oai:DiVA.org:his-25152","is_oa":true,"landing_page_url":"http://urn.kb.se/resolve?urn=urn:nbn:se:his:diva-25152","pdf_url":"https://his.diva-portal.org/smash/get/diva2:1958459/FULLTEXT02","source":{"id":"https://openalex.org/S4306401029","display_name":"University Library of Sk\u00f6vde (University of Sk\u00f6vde)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205158640","host_organization_name":"University of Sk\u00f6vde","host_organization_lineage":["https://openalex.org/I205158640"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},{"id":"pmh:oai:DiVA.org:ltu-112600","is_oa":true,"landing_page_url":"http://urn.kb.se/resolve?urn=urn:nbn:se:ltu:diva-112600","pdf_url":null,"source":{"id":"https://openalex.org/S4306401559","display_name":"KTH Publication Database DiVA (KTH Royal Institute of Technology)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"}],"best_oa_location":{"id":"doi:10.1080/19393555.2025.2498472","is_oa":true,"landing_page_url":"https://doi.org/10.1080/19393555.2025.2498472","pdf_url":null,"source":{"id":"https://openalex.org/S39280739","display_name":"Information Security Journal A Global Perspective","issn_l":"1939-3547","issn":["1939-3547","1939-3555"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320547","host_organization_name":"Taylor & Francis","host_organization_lineage":["https://openalex.org/P4310320547"],"host_organization_lineage_names":["Taylor & Francis"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Information Security Journal: A Global Perspective","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1122635329","display_name":null,"funder_award_id":"731765","funder_id":"https://openalex.org/F1196008253","funder_display_name":"SESAR Joint Undertaking"},{"id":"https://openalex.org/G4487484111","display_name":null,"funder_award_id":"20357977","funder_id":"https://openalex.org/F4320337753","funder_display_name":"Interreg"},{"id":"https://openalex.org/G7331901853","display_name":null,"funder_award_id":"EU H2020","funder_id":"https://openalex.org/F4320332999","funder_display_name":"Horizon 2020 Framework Programme"}],"funders":[{"id":"https://openalex.org/F1196008253","display_name":"SESAR Joint Undertaking","ror":null},{"id":"https://openalex.org/F4320332999","display_name":"Horizon 2020 Framework Programme","ror":"https://ror.org/00k4n6c32"},{"id":"https://openalex.org/F4320337753","display_name":"Interreg","ror":null}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":75,"referenced_works":["https://openalex.org/W1496884498","https://openalex.org/W1513567954","https://openalex.org/W1515073590","https://openalex.org/W1589382802","https://openalex.org/W1742813727","https://openalex.org/W1754501854","https://openalex.org/W1797513359","https://openalex.org/W1877340241","https://openalex.org/W1994621643","https://openalex.org/W2002356434","https://openalex.org/W2035304801","https://openalex.org/W2058362188","https://openalex.org/W2069700160","https://openalex.org/W2071147988","https://openalex.org/W2091494072","https://openalex.org/W2101989918","https://openalex.org/W2107689684","https://openalex.org/W2117362697","https://openalex.org/W2146792152","https://openalex.org/W2148210717","https://openalex.org/W2202160327","https://openalex.org/W2208596391","https://openalex.org/W2288762662","https://openalex.org/W2293383101","https://openalex.org/W2312370239","https://openalex.org/W2338991735","https://openalex.org/W2551099415","https://openalex.org/W2568486860","https://openalex.org/W2592270044","https://openalex.org/W2603811361","https://openalex.org/W2608464414","https://openalex.org/W2727435480","https://openalex.org/W2737439327","https://openalex.org/W2738011505","https://openalex.org/W2742414328","https://openalex.org/W2754938188","https://openalex.org/W2762796246","https://openalex.org/W2780588074","https://openalex.org/W2781731163","https://openalex.org/W2787816013","https://openalex.org/W2793291822","https://openalex.org/W2890921270","https://openalex.org/W2897155054","https://openalex.org/W2947292565","https://openalex.org/W2948227818","https://openalex.org/W2964377266","https://openalex.org/W2977504781","https://openalex.org/W3107036873","https://openalex.org/W3195658335","https://openalex.org/W4230286358","https://openalex.org/W4233543946","https://openalex.org/W4234540472","https://openalex.org/W4241661475","https://openalex.org/W4243883891","https://openalex.org/W4253982620","https://openalex.org/W4281564584","https://openalex.org/W4285413504","https://openalex.org/W4313327949","https://openalex.org/W4319151684","https://openalex.org/W4362702389","https://openalex.org/W4367191049","https://openalex.org/W4385232680","https://openalex.org/W4386223920","https://openalex.org/W4386369933","https://openalex.org/W4388827121","https://openalex.org/W4398218374","https://openalex.org/W4399673087","https://openalex.org/W4400037579","https://openalex.org/W4400359469","https://openalex.org/W4400977219","https://openalex.org/W4404779202","https://openalex.org/W4407115101","https://openalex.org/W6635464178","https://openalex.org/W6748716912","https://openalex.org/W7037899403"],"related_works":["https://openalex.org/W4256374004","https://openalex.org/W4310892428","https://openalex.org/W2120971814","https://openalex.org/W2384723023","https://openalex.org/W3048948897","https://openalex.org/W2777401565","https://openalex.org/W2144394323","https://openalex.org/W2362334938","https://openalex.org/W2056794087","https://openalex.org/W2033357182"],"abstract_inverted_index":{"Information":[0],"Security":[1],"Risk":[2],"Management":[3,92],"(ISRM)":[4],"activities":[5,30],"are":[6],"essential":[7],"for":[8],"organizations":[9],"seeking":[10],"to":[11,56,157,174,197],"control":[12],"and":[13,26,77,95,165,171,179,194],"monitor":[14],"risk.":[15],"However,":[16],"it":[17],"is":[18,24],"well":[19],"known":[20],"that":[21,185],"doing":[22],"so":[23],"difficult,":[25],"the":[27,47,62,72,89,105,119,129,155,167,172],"different":[28,32],"ISRM":[29,37,64,111,136,152,187],"provide":[31,35,140,191],"challenges.":[33],"To":[34],"support,":[36],"tools":[38,43,76,188],"can":[39,44],"be":[40],"used.":[41],"Such":[42],"come":[45],"in":[46,88,151,164],"form":[48],"of":[49,60,74,107,148,162],"spreadsheets,":[50],"document":[51],"templates,":[52],"or":[53,61],"dedicated":[54],"software":[55],"support":[57,193],"either":[58],"part":[59],"full":[63],"work.":[65],"Few":[66],"studies":[67],"have":[68],"been":[69],"conducted":[70],"investigating":[71],"use":[73,124],"such":[75],"their":[78],"necessary":[79],"properties.":[80],"Through":[81],"semi-structured":[82],"interviews":[83],"with":[84,99,177],"17":[85],"security":[86,108],"practitioners":[87,109],"Air":[90],"Traffic":[91],"(ATM)":[93],"domain":[94,115],"five":[96],"validation":[97],"sessions":[98],"34":[100],"experts,":[101],"this":[102],"study":[103,120],"examines":[104],"needs":[106],"using":[110],"tools.":[112,153],"The":[113,143],"ATM":[114],"was":[116],"chosen":[117],"as":[118],"context":[121],"since":[122],"they":[123],"a":[125,146,159],"method":[126],"built":[127],"on":[128],"ISO/IEC":[130],"27005":[131],"standard,":[132],"which,":[133],"unlike":[134],"other":[135],"frameworks,":[137],"does":[138],"not":[139,190],"tool":[141,169],"support.":[142],"findings":[144],"contain":[145],"collection":[147],"properties":[149],"needed":[150],"Notably,":[154],"ability":[156,173],"get":[158,175],"holistic":[160],"view":[161],"risks":[163],"toward":[166],"organization,":[168],"flexibility,":[170],"assistance":[176],"documentation":[178],"information":[180],"exchange.":[181],"We":[182],"also":[183],"identify":[184],"current":[186],"do":[189],"enough":[192],"suggest":[195],"ways":[196],"address":[198],"this.":[199]},"counts_by_year":[],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
