Dr Barney Craggs
PhD, MRes, BSc (Hons)
Expertise
Current positions
Lecturer
School of Computer ScienceChief Information Security Officer
IT Services
Contact
Press and media
Many of our academics speak to the media as experts in their field of research. If you are a journalist, please contact the University’s Media and PR Team:
Research interests
Humans are evident in all cyber physical systems, from their inception to usage - and at every point in a system`s lifecycle, decisions are being made and acted upon. My personal area of interest lies in the potential risks to both human safety and systems availability that arise from information based decision processes.
My research looks to how these cyber security risks might be identified and mitigated through the use of human factors & ergonomics knowledge and methodology from other, mature, safety-aware industries. Together, these practices form the basis for security ergonomics - a set of design principles for building safe and secure cyber physical systems. Within this field my current research space looks to security cultures and the impact these have upon organisations, people and practice.
Other Current Work
Alongside my own research interests, also I am:
- the lead researcher for the Bristol Cyber Security Group’s portfolio of cyber physical projects. In this I have responsibility for the design and build of our class-leading infrastructures testbed used for studying the cyber security of critical national infrastructure. As part of this I also maintain an international research profile, and have a consistent participation within the UK’s Industrial Control Systems community.
- part of the core leadership team for the joint University of Bristol / University of Bath Cyber Security Centre for Doctoral Training In Trust, Identity, Privacy and Security of Large-Scale Infrastructures.
- actively involved in collaborative programmes with a wide range of industrial and governmental partners.
Projects and supervisions
Research projects
A Framework for Risk-Informed Playbooks Supporting Cybersecurity and Safety Resilience in CNI
Principal Investigator
Managing organisational unit
Department of Computer ScienceDates
01/01/2022 to 31/12/2023
A Framework for Risk-Informed Playbooks Supporting Cybersecurity and Safety Resilience in CNI
Principal Investigator
Managing organisational unit
Department of Computer ScienceDates
01/01/2022 to 31/12/2023
A Framework for Risk-Informed Playbooks Supporting Cybersecurity and Safety Resilience in CNI
Principal Investigator
Managing organisational unit
School of Computer ScienceDates
01/01/2022 to 31/12/2023
Reclaiming individual autonomy and democratic discourse online: How to rebalance human and algorithmic decision making
Principal Investigator
Role
Co-Investigator
Description
In one corner is the online information architecture with sophisticated personalization algorithms and persuasive designs that shape people's information diets, often without their knowledge or input. In the other corner…Managing organisational unit
Department of Computer ScienceDates
01/03/2021 to 31/12/2025
CyFoo - Cybersecurity for Food Security
Principal Investigator
Role
Co-Investigator
Description
CyFoo studies the impact of malicious actors and vulnerabilities on the food supply. The project aims to investigate vulnerabilities and their impact in order to develop a risk analysis framework…Managing organisational unit
Department of Computer ScienceDates
01/09/2019 to 31/08/2022
Publications
Recent publications
16/01/2025Adopting a Systemic Design Approach to Cyber Security Incident Response
NSPW '24: Proceedings of the New Security Paradigms Workshop
Is cybersecurity research missing a trick? Integrating insights from the psychology of habit into research and practice
Computers and Security
Beware suppliers bearing gifts!
Computers and Security
Design Considerations for Building Credible Security Testbeds: Perspectives from Industrial Control System Use Cases
Journal of Cyber Security Technology
Everything is Awesome! Or is it? Cyber Security Risks in Critical Infrastructure
Critical Information Infrastructures Security - 14th International Conference, CRITIS 2019, Linköping, Sweden.