Influence of Awareness and Training on Cyber Security

被引:49
|
作者
McCrohan, Kevin [1 ]
Engel, Kathryn [2 ]
Harvey, James [1 ]
机构
[1] George Mason Univ, Sch Management, Enterprise Hall 135 MSN 5F4, Fairfax, VA 22030 USA
[2] Aptima Inc, Washington, DC USA
关键词
behavior change; computer security; password usage; security awareness training; training experiments;
D O I
10.1080/15332861.2010.487415
中图分类号
F [经济];
学科分类号
02 ;
摘要
This article presents the results of a study to determine the impact of a cyber threat education and awareness intervention on changes in user security behavior. Subjects were randomly assigned to one of two introductory lectures about cyber threats due to poor password management. The low-information condition was based on very general background information on passwords and computer security, while the high-information condition included very detailed and specific information on the threats to subjects' use of e-commerce. The pre/post-treatment design was a single, between-subjects factor (information level-low/high), repeated measures study, with password strength at Time 1 and password strength at Time 2 used to measure change in security behavior over a period of two weeks. The study found that at Time 1, participants possessed no significant differences in the strength of their passwords. Two weeks later, the password strength of the participants in the low-information condition was not statistically different than their initial levels, while subjects in the high-information condition demonstrated password ratings 36 percent stronger (t = 17.0, p = .000). It is concluded that when users were educated of the threats to e-commerce and trained about proper security practices, their behavior could be changed to enhance online security for themselves and the firms where they are employed.
引用
收藏
页码:23 / 41
页数:19
相关论文
共 50 条
  • [21] Cyber security and awareness, investing in a culture of safety
    Manoliu, Alexandru
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON BUSINESS EXCELLENCE, 2022, 16 (01): : 1439 - 1446
  • [22] Gamification Techniques for Raising Cyber Security Awareness
    Scholefield, Sam
    Shepherd, Lynsay A.
    HCI FOR CYBERSECURITY, PRIVACY AND TRUST, 2019, 11594 : 191 - 203
  • [23] Architecture for the Cyber Security Situational Awareness System
    Kokkonen, Tero
    INTERNET OF THINGS, SMART SPACES, AND NEXT GENERATION NETWORKS AND SYSTEMS, NEW2AN 2016/USMART 2016, 2016, 9870 : 294 - 302
  • [24] Visualization of Security Metrics for Cyber Situation Awareness
    Kotenko, Igor
    Novikova, Evgenia
    2014 NINTH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES), 2015, : 506 - 513
  • [25] Evaluating Cyber Security Awareness in South Africa
    Grobler, Marthie
    van Vuuren, Joey Jansen
    Zaaiman, Jannie
    PROCEEDINGS OF THE 10TH EUROPEAN CONFERENCE ON INFORMATION WARFARE AND SECURITY, 2011, : 113 - 121
  • [26] Scorecard Approach for Cyber-Security Awareness
    Shabe, Tsosane
    Kritzinger, Elmarie
    Loock, Marianne
    EMERGING TECHNOLOGIES FOR EDUCATION, 2018, 10676 : 144 - 153
  • [27] Cyber Security Situational Awareness among Parents
    Ahmad, Nazilah
    Mokhtar, Umi Asma
    Othman, Zulaiha Ali
    Abdullah, Siti Norul Huda Sheikh
    Fauzi, Wan Fariza Paizi
    Yeop, Yusri Hakim
    PROCEEDINGS OF THE 2018 CYBER RESILIENCE CONFERENCE (CRC), 2018,
  • [28] Cyber Security Awareness Among College Students
    Moallem, Abbas
    ADVANCES IN HUMAN FACTORS IN CYBERSECURITY, AHFE 2018, 2019, 782 : 79 - 87
  • [29] The Need of Awareness in Cyber Security with a Case Study
    Jidiga, Goverdhan Reddy
    Sammulal, P.
    2013 FOURTH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATIONS AND NETWORKING TECHNOLOGIES (ICCCNT), 2013,
  • [30] Evaluation of Montenegrin Seafarers' Awareness of Cyber Security
    Mrakovic, Ivan
    Vojinovic, Ranko
    TRANSACTIONS ON MARITIME SCIENCE-TOMS, 2020, 9 (02): : 206 - 216