A Research on the Improvement of Security Awareness through the R&D Security Education Survey of the Industry-University Cooperation Foundation

2021 ◽  
Vol 68 ◽  
pp. 81-108
Author(s):  
Song-Yi Kim ◽  
◽  
Seung-Woo Son ◽  
Jae Hyun Hwang
Author(s):  
Viacheslav Izosimov ◽  
Martin Törngren

Our societal infrastructure is transforming into a connected cyber-physical system of systems, providing numerous opportunities and new capabilities, yet also posing new and reinforced risks that require explicit consideration. This chapter addresses risks specifically related to cyber-security. One contributing factor, often neglected, is the level of security education of the users. Another factor, often overlooked, concerns security-awareness of the engineers developing cyber-physical systems. Authors present results of interviews with developers and surveys showing that increase in security-awareness and understanding of security risks, evaluated as low, are the first steps to mitigate the risks. Authors also conducted practical evaluation investigating system connectivity and vulnerabilities in complex multi-step attack scenarios. This chapter advocates that security awareness of users and developers is the foundation to deployment of interconnected system of systems, and provides recommendations for steps forward highlighting the roles of people, organizations and authorities.


2022 ◽  
pp. 1-30
Author(s):  
Viacheslav Izosimov ◽  
Martin Törngren

Our societal infrastructure is transforming into a connected cyber-physical system of systems, providing numerous opportunities and new capabilities, yet also posing new and reinforced risks that require explicit consideration. This chapter addresses risks specifically related to cyber-security. One contributing factor, often neglected, is the level of security education of the users. Another factor, often overlooked, concerns security-awareness of the engineers developing cyber-physical systems. Authors present results of interviews with developers and surveys showing that increase in security-awareness and understanding of security risks, evaluated as low, are the first steps to mitigate the risks. Authors also conducted practical evaluation investigating system connectivity and vulnerabilities in complex multi-step attack scenarios. This chapter advocates that security awareness of users and developers is the foundation to deployment of interconnected system of systems, and provides recommendations for steps forward highlighting the roles of people, organizations and authorities.


2019 ◽  
Vol 24 (3) ◽  
pp. 199-207
Author(s):  
Paula-Diana Mantea

Abstract This article brings into discussion the current state of security culture in Romania as well as the impact that the development of security education has in the training of young people who are socially responsible and aware of the importance of internalizing the basic concepts in ensuring individual and national security. The analysis continues with success factors to be pursued in public-private partnerships as a means of promoting education and security culture among young people, along with identifying recommendations for their development and improvement. Security education represents a pillar for developing a strong security culture. Therefore, increasing the security awareness among the population, especially of the young people enrolled in various educational stages, must become a priority on the strategic agendas. This paper analyzes the steps performed so far in Romania and looks into the benefits such a strategy could bring to cybersecurity, especially by developing a framework for sustainable partnerships in the security field.


Author(s):  
Richard Jankura ◽  
Martin Halaj ◽  
Ladislav Hofreiter

2019 ◽  
Vol 71 (5) ◽  
pp. 618-636 ◽  
Author(s):  
Shoufeng Ma ◽  
Shixin Zhang ◽  
Geng Li ◽  
Yi Wu

Purpose Based on the literature on information security (InfoSec) education and uses and gratifications theory, the purpose of this paper is to propose and test a research model to examine the impact of InfoSec education on social media usage. Design/methodology/approach The authors employed structural equation modeling to test the research model, with a survey data set of 293 valid subjects from a WeChat subscription about InfoSec education named secrecy view. Findings The results reveal the significant impacts of perceived content quality, perceived social influence and perceived entertainment on user satisfaction in the context of security education and social media. User satisfaction is significantly associated with user stickiness and security knowledge improvement. Additionally, the authors found that user’s security awareness moderated the effect of perceived entertainment on user satisfaction. Research limitations/implications Using a single sample might constrain the contributions of this study. Practical implications The authors suggest practical guidelines for InfoSec education on social media by enhancing perceived content quality. Moreover, due to diverse user attributes, the social media operators should recommend targeted content to different users. Originality/value This study contributes to studies on InfoSec education of social media usage and identifies factors that affect user satisfaction with social media. Furthermore, the study enriches the security education practices by uncovering differences in security awareness with regard to user satisfaction.


10.28945/2855 ◽  
2005 ◽  
Author(s):  
Mariana Hentea

The guidelines “Towards a Culture of Security” emphasize a culture of security in all aspects of information systems, from designing and planning through to everyday use, and among all participants, from government down through business to consumers. In response to national needs, Information Security education has become a priority for many educational institutions in US for the past years. More universities and colleges have established courses or specialized programs to teach Information Security skills to students enrolled in degrees related to computers such as computer information systems, computer engineering, and computer science. However, there are aspects of the security education model that need attention. This paper discusses these issues including changes to improve security awareness education. Through close coordination between faculty, industry, government agencies, and universities, the critical education of future graduates, Information Technology professionals, Information Security professionals, and public can be accelerated.


2019 ◽  
Vol 8 (1) ◽  
pp. 48-52
Author(s):  
Samuel Oluranti Oladipupo

The purpose of the study is to examine the determinants of information security awareness (ISA) among employees of Capital Market Registrars (CMRs) in Lagos, Nigeria based on established factors from the existing literatures on ISA. The main objectives of the study are; to determine the level of information security awareness among CMRs’ employees and to identify the components that influence information security awareness. This study utilised a survey design. Stratified random sampling technique was used to select the respondents for the study. A total of 326 copies of questionnaires were distributed among the employees in CMRs, of which 267 properly completed questionnaires were returned. Descriptive statistics and simple regression were used for data analysis. Finding revealed that information security policy, information security education, knowledge of technology, and employee’s behaviour significantly influenced information security awareness. The results of the study further revealed the strong correlation between employee’s behaviour and information security awareness. Overall, the study showed that the level of information security awareness is high, which implies that employees of CMRs in Lagos are aware of the potential threats and risk associated with information security. Based on these research findings, recommendations were therefore made.


Sign in / Sign up

Export Citation Format

Share Document