The Psychology of Security ….a work in progress Bruce Schneier DIMACS Workshop on Information Security Economics Rutgers University 18 January 2007.

Slides:



Advertisements
Similar presentations
Psychological biases In Negotiation. Anchoring and adjustment In the face of uncertainty, people fix on the first piece of information and subconsciously.
Advertisements

The Behavioral Side of Pricing MKT 750 Dr. West. Agenda Issues associated with product pricing Defining terms Capturing value Behavioral pricing Discuss.
Biases, Brains, and Decision Making. Lawyers are Lousy Decision-Makers.
An Exploration of Decision Processes in an Evolutionary Perspective: the Case of the Framing Effect.
Day 2 Evolution of Decision-Making.  Tversky and Kahneman, 1974  Heuristics – general rules of thumb, or habits  Generally result in decent estimates.
1 Intuitive Irrationality: Reasons for Unreason. 2 Epistemology Branch of philosophy focused on how people acquire knowledge about the world Descriptive.
Risk Thomas Lumley Department of Statistics University of Auckland.
Rationality Alan Kaylor Cline Department of Computer Sciences The University of Texas at Austin Based upon classic decision puzzlers collected by Gretchen.
1 MKT201 – Buyer Behavior Chapter 9&11 Supplementary Examples.
The Disordered Brain what happens when decision making goes wrong? Neil Harrison University of Sussex Formerly: Institute of Cognitive Neuroscience & Wellcome.
1 st lecture Probabilities and Prospect Theory. Probabilities In a text over 10 standard novel-pages, how many 7-letter words are of the form: 1._ _ _.
Survey.
CHAPTER 14 Utility Axioms Paradoxes & Implications.
Prospect Theory, Framing and Behavioral Traps Yuval Shahar M.D., Ph.D. Judgment and Decision Making in Information Systems.
Decision making and economics. Economic theories Economic theories provide normative standards Expected value Expected utility Specialized branches like.
© POSbase 2005 The Conjunction Fallacy Please read the following scenario: (by Tversky & Kahneman, 1983)Tversky & Kahneman, 1983 Linda is 31 years old,
Judgment in Managerial Decision Making 8e Chapter 3 Common Biases
Running Experiments with Amazon Mechanical-Turk Gabriele Paolacci, Jesse Chandler, Jesse Chandler Judgment and Decision Making, Vol. 5, No. 5, August 2010.
BEE3049 Behaviour, Decisions and Markets Miguel A. Fonseca.
Or Why We’re Not Really As Rational As We’d Like to Believe.
Decision-making II choosing between gambles neural basis of decision-making.
Lecture 4 PPE 110. In most situations when people make choices, the outcomes are random. For example, if you buy a stock, it may go up or down. If you.
Heuristics and Biases. Normative Model Bayes rule tells you how you should reason with probabilities – it is a normative model But do people reason like.
Do we always make the best possible decisions?
Copyright © 2001 by The McGraw-Hill Companies, Inc. All rights reserved. Slide Thinking Like an Economist.
Decision-making I choosing between gambles neural basis of decision-making.
Heuristics & Biases. Bayes Rule Prior Beliefs Evidence Posterior Probability.
Decision Making. Test Yourself: Decision Making and the Availability Heuristic 1) Which is a more likely cause of death in the United States: being killed.
Copyright © 2000 by Harcourt, Inc. All rights reserved. What is Perception? Perception: The process of recognizing and understanding others By understanding.
Today’s Topic Do you believe in free will? Why or why not?
Review of Related Literature Different decision-making: – Budget decisions of managers – Irrationality of continuing the risk of losing a prospect – Decision-making.
Good thinking or gut feeling
Decision making Making decisions Optimal decisions Violations of rationality.
Decision Making choice… maximizing utility framing effects
Framing Effects From Chapter 34 ‘Frame and Reality’ of Thinking Fast and Slow, by D. Kahneman.
The Availability Heuristic “assess the frequency of a class or the probability of an event by the ease with which instances or occurrences can be brought.
Understanding Probability and Long-Term Expectations Example from Student - Kalyani Thampi I have an example of "chance" that I thought about mentioning.
Decision making behavior Why do people make the choices they do? Reason-based choice Regret theory Effort-accuracy Choice and judgment heuristics.
RISK BENEFIT ANALYSIS Special Lectures University of Kuwait Richard Wilson Mallinckrodt Professor of Physics Harvard University January 13th, 14th and.
RISK BENEFIT ANALYSIS Special Lectures University of Kuwait Richard Wilson Mallinckrodt Professor of Physics Harvard University January 13th, 14th and.
Lecture 15 – Decision making 1 Decision making occurs when you have several alternatives and you choose among them. There are two characteristics of good.
FIN 614: Financial Management Larry Schrenk, Instructor.
Human Cognitive Processes: psyc 345 Ch. 13 Reasoning and Decision Making Takashi Yamauchi © Takashi Yamauchi (Dept. of Psychology, Texas A&M University)
Reframe the problem or the solution
LESSON TWO ECONOMIC RATIONALITY Subtopic 10 – Statistical Reasoning Created by The North Carolina School of Science and Math forThe North Carolina School.
Judgement Judgement We change our opinion of the likelihood of something in light of new information. Example:  Do you think.
Psychology 485 March 23,  Intro & Definitions Why learn about probabilities and risk?  What is learned? Expected Utility Prospect Theory Scalar.
PSY 323 – Cognition Chapter 13: Judgment, Decisions & Reasoning.
Introduction to Prospect Theory Psychology 466: Judgment & Decision Making Instructor: John Miyamoto 11/17/2015: Lecture 08-2 Note: This Powerpoint presentation.
1 DECISION MAKING Suppose your patient (from the Brazilian rainforest) has tested positive for a rare but serious disease. Treatment exists but is risky.
The Surprising Science of Ethics Scott Truelove Austin Energy Organization Development.
Inductive reasoning problems … … … … ?? ?? 1210 Need.
1 BAMS 517 – 2011 Decision Analysis -IV Utility Failures and Prospect Theory Martin L. Puterman UBC Sauder School of Business Winter Term
QUESTION to answer You are worried about a possible disease form central or SE ASIA affecting 600 people Decide between to government programs.
Inductive reasoning problems … … … … ?? ?? 1210 Need.
A. Judgment Heuristics Definition: Rule of thumb; quick decision guide When are heuristics used? - When making intuitive judgments about relative likelihoods.
Heuristics and Biases Thomas R. Stewart, Ph.D. Center for Policy Research Rockefeller College of Public Affairs and Policy University at Albany State University.
Implicit Decision making Dr Magda Osman Room 2.25 Office hours Mondays.
The Representativeness Heuristic then: Risk Attitude and Framing Effects Psychology 355: Cognitive Psychology Instructor: John Miyamoto 6/1/2016: Lecture.
Behavioral Economics A branch of economics that studies the psychology of decision-making to explain consumer behavior.
Effects of Foreign Language on Decision Making
Thomas Lumley Department of Statistics University of Auckland
PSY 323 – Cognition Chapter 13: Judgment, Decisions & Reasoning.
Thomas Lumley Department of Statistics University of Auckland
1st: Representativeness Heuristic and Conjunction Errors 2nd: Risk Attitude and Framing Effects Psychology 355:
These slides are preview slides
Psychology of Security
DIS 280 Social Science Research Methodology: Problem Framing
Choices, Values and Frames
HEURISTICS.
Presentation transcript:

The Psychology of Security ….a work in progress Bruce Schneier DIMACS Workshop on Information Security Economics Rutgers University 18 January 2007

Security as a Trade-Off Security is always a trade-off You are a security consumer Is it worth it? People have natural intuitions about trade-offs Why do we get it wrong so often?

Aspects of the Trade-Off 1. The severity of the risk. 2. The probability of the risk. 3. The magnitude of the costs. 4. How effective the countermeasure is at mitigating the risk. 5. The trade-off itself.

Amygdala Ancient part of the brain Controls “ flight or fight ” reflex adrenaline Increased heart rate Increased muscle tension sweaty palms Very fast, faster than consciousness Can be overridden by higher parts of the brain but it takes effort AmygdalaAmygdala The amygdala is a small structure lying in the medial temporal lobe which is important for the emotional content of new memories. Further reading: J. LeDoux (1998). The Emotional Brain. New York: Simon and Schuster. by Catherine E. Myers. Copyright © 2006 Memory Loss and the BrainArtwork copyright © 2000 Ann L. Myers The amygdala is a small structure lying in the medial temporal lobe which is important for the emotional content of new memories. Further reading: J. LeDoux (1998). The Emotional Brain. New York: Simon and Schuster. by Catherine E. Myers. Copyright © 2006 Memory Loss and the BrainArtwork copyright © 2000 Ann L. Myers AmygdalaAmygdala The amygdala is a small structure lying in the medial temporal lobe which is important for the emotional content of new memories. Further reading: J. LeDoux (1998). The Emotional Brain. New York: Simon and Schuster. by Catherine E. Myers. Copyright © 2006 Memory Loss and the BrainArtwork copyright © 2000 Ann L. Myers The amygdala is a small structure lying in the medial temporal lobe which is important for the emotional content of new memories. Further reading: J. LeDoux (1998). The Emotional Brain. New York: Simon and Schuster. by Catherine E. Myers. Copyright © 2006 Memory Loss and the BrainArtwork copyright © 2000 Ann L. Myers Amygdala The amygdala is a small structure lying in the medial temporal lobe which is important for the emotional content of new memories. by Catherine E. Myers. Copyright © 2006 Memory Loss and the Brain Artwork copyright © 2000 Ann L. Myers

Neocortex The part of the mammalian brain associated with consciousness Thinking Reasoning Newest part of the brain Slower Uses heuristics Rules of thumb Biases Generally beneficial, but can fail AmygdalaAmygdala The amygdala is a small structure lying in the medial temporal lobe which is important for the emotional content of new memories. Further reading: J. LeDoux (1998). The Emotional Brain. New York: Simon and Schuster. by Catherine E. Myers. Copyright © 2006 Memory Loss and the BrainArtwork copyright © 2000 Ann L. Myers The amygdala is a small structure lying in the medial temporal lobe which is important for the emotional content of new memories. Further reading: J. LeDoux (1998). The Emotional Brain. New York: Simon and Schuster. by Catherine E. Myers. Copyright © 2006 Memory Loss and the BrainArtwork copyright © 2000 Ann L. Myers AmygdalaAmygdala The amygdala is a small structure lying in the medial temporal lobe which is important for the emotional content of new memories. Further reading: J. LeDoux (1998). The Emotional Brain. New York: Simon and Schuster. by Catherine E. Myers. Copyright © 2006 Memory Loss and the BrainArtwork copyright © 2000 Ann L. Myers The amygdala is a small structure lying in the medial temporal lobe which is important for the emotional content of new memories. Further reading: J. LeDoux (1998). The Emotional Brain. New York: Simon and Schuster. by Catherine E. Myers. Copyright © 2006 Memory Loss and the BrainArtwork copyright © 2000 Ann L. Myers

“Common Sense” About Risks

Prospect Theory: Experiment 1 Group 1 given the choice between: A sure gain of $500 A 50% gain of $1000 Group 2 given the choice between: A sure loss of $500 A 50% loss of $1000

Prospect Theory: Asian Disease Problem Imagine that the U.S. is preparing for the outbreak of an unusual Asian disease, which is expected to kill 600 people. Two alternative programs to combat the disease have been proposed. Assume the exact scientific estimate of the consequences of the programs are as follows: Group 1: Program A: “200 people will be saved.” Program B: “There is a one-third probability that 600 people will be saved, and a two-thirds probability that no people will be saved.” Group 2: Program C: “400 people will die.” Program D: “There is a one-third probability that nobody will die, and a two-third probability that 600 people will die.”

Prospect Theory: Endowment Effect Mug experiment Pen/mug experiment

Other Biases that Affect Risk Optimism bias Control bias Risks involving people Risks involving children

Availability Heuristic In a typical sample of text in the English language, is it more likely that a word starts with the letter K or that K is its third letter (not counting words with less than three letters)? Football experiment Presidential election experiment

Vividness Demonstration of Availability Heuristic Pallid vs vidid: On his way out the door, Sanders [the defendant] staggers against a serving table, knocking a bowl to the floor. One his way out the door, Sanders staggered against a serving table, knocking a bowl of guacamole dip to the floor and splattering guacamole on the white shag carpet. Palid vs vivid: The owner of the garbage truck admitted under cross- examination that his garbage truck is difficult to see at night because it is grey in color. The owner of the garbage truck admitted under cross- examination that his garbage truck is difficult to see at night because it is grey in color. The owner said his trucks are grey “because it hides the dirt,” and he said, “What do you want, I should paint them pink?”

Availability Heuristic Worst memory is most available Hindsight bias

Representitiveness Linda is a 31 years old, single, outspoken, and very bright. She majored in philosophy As a student, she was deeply concerned with issues of discrimination and social justices, and also participated in antinuclear demonstrations. Please check off the most likely alternative: Linda is a bank teller. Linda is a bank teller and is active in the feminist movement.

Cost Heuristics: Mental Accounting Trade-off 1: Imagine that you have decided to see a play where the admission is $10 per ticket. As you enter the theater you discover that you have lost a $10 bill. Would you still pay $10 for a ticket to the play? Trade-off 2: Imagine that you have decided to see a play where the admission is $10 per ticket. As you enter the theater you discover that you have lost the ticket. The seat is not marked and the ticket cannot be recovered. Would you pay $10 for another ticket?

Cost Heuristics: Mental Accounting (2) Imagine that you are about to purchase a jacket for $125, and a calculator for $15. The calculator salesman informs you that the calculator you wish to buy is on sale for $10 at the other branch of the store, located 20 minutes drive away. Would you make the trip to the other store? Imagine that you are about to purchase a jacket for $15, and a calculator for $125. The calculator salesman informs you that the calculator you wish to buy is on sale for $120 at the other branch of the store, located 20 minutes drive away. Would you make the trip to the other store?

Time Discounting People are indifferent to: $15 today and $60 In twelve months (139%) $250 today and $250 in twelve months (34%) $3000 today and $4000 in twelve months (29%) Framing effects

Other Heuristics and Biases Context effect Choice bracketing Anchoring effect

What does this all mean?

BT Counterpane 1090 La Avenida Street | Mountain View, CA | USA