Social engineering and mental models
Human beings are the primary consumers of technology and systems. They are also likely to be the elements that can easily break security rules. Most organizations ensure that humans (or employees) and the technology (or system) fit together for common business goals. How humans and computers interact is critical in cybersecurity and threat intelligence in particular because it allows analysts to understand people's psychological and cognitive proficiency when using the system or the technology placed in front of them. Human-Computer Interaction (HCI) is an active area of research; threat actors and analysts are leveraging it to attack or protect systems.
Social engineering is non-technical and uses psychological manipulation to make people give you what you want. Very common in the security environment, it has become an art and one of the most successful attack vectors. Mental models, on the other hand, help you understand users' perceptions...