Browse Definitions :
Definition

security theater

Security theater is the practice of organizations or security teams implementing publicized or superficial measurements that create an atmosphere of safety that may only achieve the appearance of heightened security. While actual security processes can be measured based on the probability of various risks and how equipped a group is to handle them, security theater is based on a psychological feeling. The term was first coined by the computer security expert, Bruce Schneier, and has since been adapted to describe a variety of scenarios.

Without any mathematical basis, individuals can have psychological reactions to their assessment of potential risks in their lives and circumstances. In many situations, these can even be far removed from the actual calculated probability of these risks. An individual might feel more strongly at risk of certain kinds of threats than others based on the information they consume about those kinds of risks and their personal biases about them. Security theater is the purposeful attempt to create more positive feelings of safety, even in the complete absence of implementing measures that actually improve safety.

The psychology of security theater measures can have positive or adverse effects. They may have a positive effect by helping to thwart the spread of unnecessary fear, but at the same time a false feeling of security could make people less on their guard than they would normally be, actually lowering their security.

Examples of security theater

Some examples of measures that are considered security theater rather than authentic security include:

  • Security guards whose guns contain blanks.
  • Elaborate airport security systems that give an impression of being more thorough than they actually are, such as random individual searches.
  • Dummy security cameras that do not capture or broadcast actual footage.
  • Computer systems that hide their system features to make them seem less vulnerable to attacks.
  • Password strength policies that are not reinforced by IT staff.
  • Building access that is granted by an identification badge.
  • Tamper-evident seals on pill bottles or packaged goods.

Some of these measures may have a slight benefit to security, but ultimately security theater measures are more about making individuals feel better. In each of these instances, the security measure can be fairly easily circumvented. For example, a criminal could make a copy of an identification badge. However, in general the public still feels better having a superficial security barrier in place because it may still improve the probability that the people involved will stay safe.

This was last updated in April 2019

Continue Reading About security theater

Networking
  • subnet (subnetwork)

    A subnet, or subnetwork, is a segmented piece of a larger network. More specifically, subnets are a logical partition of an IP ...

  • Transmission Control Protocol (TCP)

    Transmission Control Protocol (TCP) is a standard protocol on the internet that ensures the reliable transmission of data between...

  • secure access service edge (SASE)

    Secure access service edge (SASE), pronounced sassy, is a cloud architecture model that bundles together network and cloud-native...

Security
  • cyber attack

    A cyber attack is any malicious attempt to gain unauthorized access to a computer, computing system or computer network with the ...

  • digital signature

    A digital signature is a mathematical technique used to validate the authenticity and integrity of a digital document, message or...

  • What is security information and event management (SIEM)?

    Security information and event management (SIEM) is an approach to security management that combines security information ...

CIO
  • product development (new product development)

    Product development -- also called new product management -- is a series of steps that includes the conceptualization, design, ...

  • innovation culture

    Innovation culture is the work environment that leaders cultivate to nurture unorthodox thinking and its application.

  • technology addiction

    Technology addiction is an impulse control disorder that involves the obsessive use of mobile devices, the internet or video ...

HRSoftware
  • organizational network analysis (ONA)

    Organizational network analysis (ONA) is a quantitative method for modeling and analyzing how communications, information, ...

  • HireVue

    HireVue is an enterprise video interviewing technology provider of a platform that lets recruiters and hiring managers screen ...

  • Human Resource Certification Institute (HRCI)

    Human Resource Certification Institute (HRCI) is a U.S.-based credentialing organization offering certifications to HR ...

Customer Experience
  • contact center agent (call center agent)

    A contact center agent is a person who handles incoming or outgoing customer communications for an organization.

  • contact center management

    Contact center management is the process of overseeing contact center operations with the goal of providing an outstanding ...

  • digital marketing

    Digital marketing is the promotion and marketing of goods and services to consumers through digital channels and electronic ...

Close