A look at mental models and risk communication to better understand the security decisions end users make, why they make them, and how to guide them in their decision-making process.


Developers are faced with a difficult task. Design an application that is usable for a wide range of end users, with the expectation that these end users do not have the same knowledge as the developer. An area of particular significance is computer security. The average user is unlikely to understand the intricacies of TLS or botnets. Additionally, the user is rarely focused on security; it is almost always a…

Jacob Davis

