EDBT 2026 Demo / reviewers in the wild / expert
James Nicholson
dblp:64/2037
· DBLP profile ↗
25ranked-venue papers
7as first author
10since 2021 · last 2026
—ORCID · conflict
Domains — the database's venue-derived domains; a paper can count in several
Human-computer interaction and ubiquitous computing · 22 · 7 first-author · 9 since 2021Security and privacy · 3 · 1 first-authorApplied, interdisciplinary, general and emerging computing · 2 · 1 since 2021Artificial intelligence and machine learning · 1Databases, data management, data science and information retrieval · 1 · 1 since 2021
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2026 | Post-mortem information management: exploring contextual factors in appropriate personal data access after deathabstractWith the increasing size and complexity of personal information and data landscapes, there is a need for guidance and support in the appropriate management of a deceased person’s postmortem privacy and digital legacy. However, most people engage poorly with existing mechanisms for specifying and planning for access and suitable usage of their own data. We report on two studies exploring the ways in which contextual factors such as the accessor and the data type may affect the appropriateness of personal data flows differently during life and after death. Our findings indicate that suitable data access after death is highly individual and contextual, with differences in appropriateness between during-life and after-death data flows significantly affected by the accessor and the data type in question. We identify that ambiguous accessor motivation, failure to communicate intent, changing temporal context and latent data values further complicate the act of digital legacy planning. Our findings also provide further evidence for the existence of a postmortem privacy paradox in which reported user behaviors do not reflect intent. With this in mind, we offer design recommendations for the integration of digital legacy planning functionality within Personal Information Management (PIM) and Group Information Management (GIM) systems. Jack Holt, Jan D. Smeddinck, James Nicholson, Vasillis Vlachokyriakos, Abigail Durrant |
Hum. Comput. Interact. | 3 |
| 2026 | Scaffolding Online Safety in Older Communities: Exploring the Relationship between Digital Literacy and CybersecurityabstractOlder adults are often subjected to online attacks and can be vulnerable to social engineering. In addition to direct harms, this may contribute towards lower rates of technology use and digital literacy in older populations. Since September 2019, we have worked with older adult volunteers to create a peer-to-peer cybersecurity advocacy initiative. We present a thematic analysis of longitudinal qualitative data that explores links between cybersecurity and digital literacy. Our findings highlight a technical ceiling that limited some proactive changes for peer advocates and for those they reached. We suggest that overcoming such issues requires significant practical familiarity, aided by the provision of repeat practice in a safe environment and with longitudinal support. This, we position as part of a need for the integration of cybersecurity training within digital literacy education for older learners. Finally, we elaborate on the structure of our engagement in terms of layered and distributed scaffolding. Jack Holt, James Nicholson |
ACM Trans. Comput. Hum. Interact. | 2 |
| 2025 | Using Anonymous Discussion Platforms to Support Open Conversations about Cybersecurity in OrganisationsabstractPeople-centred security is critical for the security of an organisation, but we know that it comes at a cost. Recently the academic literature base has started to focus on how security might be understood and promoted as a facet of the overall culture of an organisation. This work sets out to understand the experiences of employees and management when using an anonymous online discussion platform to discuss cybersecurity policies. Following a 2-week deployment in a large UK educational institution, we found that anonymity helped individuals share their experiences, and that these experiences helped others understand more about the rationale for security policies. However, we also found that anonymity negatively impacted on individuals’ ability to discuss specific problems and follow up on incidents. We discuss the opportunities and challenges of using anonymous discussion platforms in organisations for improving the security culture through social participation and a more transparent listening culture. Eve Jenkins, Dinislam Abdulgalimov, Pamela Briggs, Patrick Olivier, James Nicholson |
CHI | 5 |
| 2023 | OurStrategy: Employee Voice In Transnational Strategy DevelopmentabstractThe rich detail generated by qualitative research is essential for understanding workplace contexts and processes for organizational development. This can be a highly involved and extensive process, thus limiting the number of people who can normally be allowed to fully participate. This is especially problematic when it comes to workplace collaboration and development, as it means that a large number of voices are not considered and heard. In this paper, we provide and implement a novel semi-automated approach that enables large-scale qualitative research. This was done within the context of developing a new organizational strategy for a large and diverse multi-lingual international development organization. We included over 150 different stakeholders whilst enabling their views to be collected and analyzed in depth. This case study demonstrates how to effectively implement qualitative interview research at scale with an application to the employee voice setting, contributing the tools and means to achieve this. Dinislam Abdulgalimov, Reuben Kirkham, James Nicholson, Tom Bartindale, Patrick Olivier |
CHI | 3 |
| 2023 | Friendly Folk Advice: Exploring Cybersecurity Information Sharing in Nigeria
James Nicholson, Opeyemi Dele-Ajayi, Kemi Fasae, Boniface K. Alese |
INTERACT (1) | 1 |
| 2023 | Designing for the Embedding of Employee VoiceabstractPrevious research on employee voice has sought to design technological solutions that address the challenges of speaking up in the workplace. However, effectively embedding employee voice systems in organisations requires designers to engage with the social processes, power relations and contextual factors of individual workplaces. We explore this process within a university workplace through a research project responding to a crisis in educational service delivery arising from the COVID-19 pandemic. Within a successful three-month staff-led engagement, we examined the intricacies of embedding employee voice, exploring how the interactions between existing actors impacted the effectiveness of the process. We sought to identify specific actions to promote employee voice and overcome barriers to its successful establishment in organisational decision-making. We highlight design considerations for an effective employee voice system that facilitates embedding employee voice, including assurance, bounded accountability and bias reflexivity. Dinislam Abdulgalimov, Reuben Kirkham, Stephen Lindsay, James Nicholson, Vasillis Vlachokyriakos, Emily Dao, Daniel Kos, Daniel Jitnah, Pamela Briggs, Patrick Olivier |
Proc. ACM Hum. Comput. Interact. | 4 |
| 2022 | Holding Your Hand on the Danger Button: Observing User Phish Detection Strategies Across Mobile and DesktopabstractPhishing emails continue to be a major cause of cybersecurity breaches despite the development of technical measures designed to thwart these attacks. Most phishing studies have investigated desktop email platforms, but the use of mobile devices for email exchanges has soared in recent years, especially amongst young adults. In this paper, we explore how the digital platform (desktop vs. mobile) influences users' phish detection strategies. Twenty-one young adults (18-25 years) were asked to rate the legitimacy of emails using a live inbox test while using a think-aloud protocol on both platforms. Our results suggest that a lack of knowledge about key defence information on the mobile platform results in weak phish detection. We discuss the implications of these findings and offer design recommendations to support effective phish detection by smartphone users. Matt Dixon, James Nicholson, Dawn Branley-Bell, Pamela Briggs, Lynne M. Coventry |
Proc. ACM Hum. Comput. Interact. | 2 |
| 2021 | Training and Embedding Cybersecurity Guardians in Older CommunitiesabstractOlder adults can struggle to access relevant community expertise when faced with new situations. One such situation is the number of cyberattacks they may face when interacting online. This paper reports on an initiative which recruited, trained, and supported older adults to become community cybersecurity educators (CyberGuardians), tasked with promoting cybersecurity best practice within their communities to prevent older adults falling victim to opportunistic cyberattacks. This initiative utilised an embedded peer-to-peer information dissemination strategy, rather than expert-to-citizen, facilitating the inclusion of individuals who would ordinarily be unlikely to seek cybersecurity information and thus may be vulnerable to cyberattacks. We report on ways the CyberGuardians used informal methods to create more aware communities, served as role models for behaviour change and indirectly improved their personal wellbeing. We discuss considerations for supporting CyberGuardians, including implications for sustainability and for replicating this model in other digital contexts, e.g., recognising misinformation or improving mental health. James Nicholson, Benjamin Alan Morrison, Matt Dixon, Jack Holt, Lynne M. Coventry, Jill McGlasson |
CHI | 1 |
| 2021 | Exploring the Acceptability of Graphical Passwords for People with Dyslexia
Polina Evtimova, James Nicholson |
INTERACT (1) | 2 |
| 2021 | From Personal Data to Digital Legacy: Exploring Conflicts in the Sharing, Security and Privacy of Post-mortem DataabstractAs digital technologies become more prevalent there is a growing awareness of the importance of good security and privacy practices. The tools and techniques used to achieve this are typically designed with the living user in mind, with little consideration of how they should or will perform after the user has died. We report on two workshops carried out with users of password managers to explore their views on the post-mortem sharing, security and privacy of a range of common digital assets. We discuss a post-mortem privacy paradox where users recognise value in planning for their digital legacy, yet avoid actively doing so. Importantly, our findings highlight a tension between the use of recommended security tools during life and facilitating appropriate post-mortem access to chosen assets. We offer design recommendations to facilitate and encourage digital legacy planning while promoting good security habits during life. Jack Holt, James Nicholson, Jan D. Smeddinck |
WWW | 2 |
| 2020 | Designing for Employee VoiceabstractEmployee voice and workplace democracy have a positive impact on employee wellbeing and the performance of organizations. In this paper, we conducted interviews with employees to identify facilitators and inhibitors for voice within the workplace and a corresponding set of appropriate qualities: Civility, Validity, Safety and Egalitarianism. We then operationalised these qualities as a set of design goals - Assured Anonymity, Constructive Moderation, Adequate Slowness and Controlled Access - in the design and development of a secure anonymous employee voice system. Our novel take on the Enterprise Social Network aims to foster good citizenship whilst also promoting frank yet constructive discussion. We reflect on a two-week deployment of our system, the diverse range of candid discussions that emerged around important workplace issues and the potential for change within the host organization. We conclude by reflecting on the ways in which our approach shaped discourse and supported the creation of a trusted environment for employee voice. Dinislam Abdulgalimov, Reuben Kirkham, James Nicholson, Vasillis Vlachokyriakos, Pamela Briggs, Patrick Olivier |
CHI | 3 |
| 2019 | "If It's Important It Will Be A Headline": Cybersecurity Information Seeking in Older AdultsabstractOlder adults are increasingly vulnerable to cybersecurity attacks and scams. Yet we know relatively little about their understanding of cybersecurity, their information-seeking behaviours, and their trusted sources of information and advice in this domain. We conducted 22 semi-structured interviews with community-dwelling older adults in order to explore their cybersecurity information seeking behaviours. Following a thematic analysis of these interviews, we developed a cybersecurity information access framework that highlights shortcomings in older adults' choice of information resources. Specifically, we find that older users prioritise social resources based on availability, rather than cybersecurity expertise, and that they avoid using the Internet for cybersecurity information searches despite using it for other domains. Finally, we discuss the design of cybersecurity information dissemination strategies for older users, incorporating favoured sources such as TV adverts and radio programming. James Nicholson, Lynne M. Coventry, Pamela Briggs |
CHI | 1 |
| 2017 | Can we fight social engineering attacks by social means? Assessing social salience as a means to improve phish detection
James Nicholson, Lynne M. Coventry, Pamela Briggs |
SOUPS | 1 |
| 2015 | Using IMUs to Identify Supervisors on Touch Devices
Ahmed Kharrufa, James Nicholson, Paul Dunphy, Steve Hodges 0001, Pamela Briggs, Patrick Olivier |
INTERACT (2) | 2 |
| 2015 | Social Media As a Resource for Understanding Security Experiences: A Qualitative Analysis of #Password Tweets
Paul Dunphy, Vasillis Vlachokyriakos, Anja Thieme, James Nicholson, John C. McCarthy 0002, Patrick Olivier |
SOUPS | 4 |
| 2014 | Panopticon as an eLearning support search toolabstractWe present an evaluation of Panopticon, a video surrogate system, as an online eLearning support search tool for finding information within video lectures. A comparison was made with a standard video player (YouTube) in two scenarios with two classes of users: revision students and independent learners. Results showed that users of Panopticon were significantly faster at finding information within the lecture videos than users of the YouTube player. It was also found that videos predominantly featuring a talking lecturer took longest to navigate, presenting design implications for lectures to be uploaded to open eLearning platforms. James Nicholson, Mark Huber, Daniel Jackson 0002, Patrick Olivier |
CHI | 1 |
| 2014 | Detecting Port Scans against Mobile Devices with Neural Networks and Decision Trees
Christo Panchev, Petar Dobrev, James Nicholson |
EANN | 3 |
| 2013 | Age-related performance issues for PIN and face-based authentication systemsabstractGraphical authentication systems typically claim to be more usable than PIN or password-based systems, but these claims often follow limited, single-stage paradigm testing on a young, student population. We present a more demanding test paradigm in which multiple codes are learned and tested over a three-week period. We use this paradigm with two user populations, comparing the performance of younger and older adults. We first establish baseline performance in a study in which populations of younger and older adults learn PIN codes and we follow this with a second study in which younger and older adults use two face-based graphical authentication systems employing young faces vs. old faces as code components. As expected, older adults show relatively poor performance when compared to younger adults, irrespective of the authentication material, but this age-related deficit can be markedly reduced by the introduction of age-appropriate faces. We conclude firstly that this paradigm provides a good basis for the future evaluation of memory-based authentication systems and secondly that age-appropriate face-based authentication is viable in the security marketplace. James Nicholson, Lynne M. Coventry, Pamela Briggs |
CHI | 1 |
| 2013 | Panopticon: a parallel video overview systemabstractPanopticon is a video surrogate system that displays multiple sub-sequences in parallel to present a rapid overview of the entire sequence to the user. A novel, precisely animated arrangement slides thumbnails to provide a consistent spatiotemporal layout while allowing any sub-sequence of the original video to be watched without interruption. Furthermore, this output can be generated offline as a highly efficient repeated animation loop, making it suitable for resource-constrained environments, such as web-based interaction. Two versions of Panopticon were evaluated using three different types of video footage with the aim of determining the usability of the proposed system. Results demonstrated an advantage over another surrogate with surveillance footage in terms of search times and this advantage was further improved with Panopticon 2. Eye tracking data suggests that Panopticon's advantage stems from the animated timeline that users heavily rely on. Daniel Jackson 0002, James Nicholson, Gerrit Stoeckigt, Rebecca Wrobel, Anja Thieme, Patrick Olivier |
UIST | 2 |
| 2013 | Faces and Pictures: Understanding age differences in two types of graphical authentications
James Nicholson, Lynne M. Coventry, Pamela Briggs |
Int. J. Hum. Comput. Stud. | 1 |
| 2012 | Invisible design: exploring insights and ideas through ambiguous film scenariosabstractInvisible Design is a technique for generating insights and ideas with workshop participants in the early stages of concept development. It involves the creation of ambiguous films in which characters discuss a technology that is not directly shown. The technique builds on previous work in HCI on scenarios, persona, theatre, film and ambiguity. The Invisible Design approach is illustrated with three examples from unrelated projects; Biometric Daemon, Panini and Smart Money. The paper presents a qualitative analysis of data from a series of workshops where these Invisible Designs were discussed. The analysis outlines responses to the films in terms of; existing problems, concerns with imagined technologies and design speculation. It is argued that Invisible Design can help to create a space for critical and creative dialogue during participatory concept development. Pamela Briggs, Mark Blythe, John Vines, Stephen Lindsay, Paul Dunphy, James Nicholson, David Philip Green, Jim Kitson, Andrew F. Monk, Patrick Olivier |
Conference on Designing Interactive Systems | 6 |
| 2010 | Multi-touch authentication on tabletopsabstractThe introduction of tabletop interfaces has given rise to the need for the development of secure and usable authentication techniques that are appropriate for the co-located collaborative settings for which they have been designed. Most commonly, user authentication is based on something you know, but this is a particular problem for tabletop interfaces, as they are particularly vulnerable to shoulder surfing given their remit to foster co-located collaboration. In other words, tabletop users would typically authenticate in full view of a number of observers. In this paper, we introduce and evaluate a number of novel tabletop authentication schemes that exploit the features of multi-touch interaction in order to inhibit shoulder surfing. In our pilot work with users, and in our formal user-evaluation, one authentication scheme - Pressure-Grid - stood out, significantly enhancing shoulder surfing resistance when participants used it to enter both PINs and graphical passwords. David Kim 0002, Paul Dunphy, Pamela Briggs, Jonathan Hook, James Nicholson, Patrick Olivier |
CHI | 6 |
| 2010 | A safe communication scheme for an intelligent Wireless Networked Control System Coordination AgentabstractWireless networked control systems have begun to gain acceptance during the last decade, largely due to the increased flexibility and lower costs they promise to provide. The pace of application has been held back, however, by the reluctance of industry to make the accommodations necessary to allow wireless paths to be incorporated in process control loops, thus limiting the potential applications and benefits of wireless systems. The problem is that there are conflicts between maintaining the performance of control loops, which can be degraded by slow data rates and delays in wireless paths, and the usual objectives in managing a wireless sensor network, namely freedom to configure the network and to adjust data rates at will, to maximize efficiency and to conserve energy consumption in the network nodes, which are very often battery powered. We address this conflict by developing a new component for use in industrial control systems, called a Wireless Networked Control System Coordination Agent. This agent is designed to be part of an intelligent supervisory control system, and to grant the wireless sensor network gateway as much latitude in meeting its objectives as possible while maintaining the performance of control loops that incorporate wireless paths, thus adding to the safety and reliability of future wireless networked control systems. In this discussion we deal with data rates and control-loop path delays as the two primary concerns; in the future we plan to extend the scope of this agent to handle more issues, such as jitter and wireless sensor network loading effects (e.g., variation of path delays with changes in loading). James H. Taylor, Hazem M. S. Ibrahim, Jeff Slipp, James Nicholson |
SMC | 4 |
| 2008 | Securing passfaces for descriptionabstractOne common practice in relation to alphanumeric passwords is to write them down or share them with a trusted friend or colleague. Graphical password schemes often claim the advantage that they are significantly more secure with respect to both verbal disclosure and writing down. We investigated the reality of this claim in relation to the Passfaces graphical password scheme. By collecting a corpus of naturalistic descriptions of a set of 45 faces, we explored participants' ability to associate descriptions with faces across three conditions in which the decoy faces were selected: (1) at random; (2) on the basis of their visual similarity to the target face; and (3) on the basis of the similarity of the verbal descriptions of the decoy faces to the target face. Participants were found to perform significantly worse when presented with visual and verbally grouped decoys, suggesting that Passfaces can be further secured for description. Subtle differences in both the nature of male and female descriptions, and male and female performance were also observed. Paul Dunphy, James Nicholson, Patrick Olivier |
SOUPS | 2 |
| 2007 | Experiences from a wireless sensor network deployment in a petroleum environmentabstractIn this paper, we describe our experiences in the design, implementation and deployment of a wireless sensor network in a petroleum facility. A heterogeneous architecture is devised using Commercial Off-the-Shelf equipment and hardware interface is designed to setup the proposed prototype in a petroleum facility. Various performance parameters such as latency and data rate are investigated. The results show that sensor networks for an industrial environment have firm requirements of latency, throughput and channel access. In addition, an analysis of environmental noise present in the plant is also presented. Ian Johnstone, James Nicholson, Babar Shehzad, Jeff Slipp |
IWCMC | 2 |