Influence of Awareness and Training on Cyber Security

被引:49
|
作者
McCrohan, Kevin [1 ]
Engel, Kathryn [2 ]
Harvey, James [1 ]
机构
[1] George Mason Univ, Sch Management, Enterprise Hall 135 MSN 5F4, Fairfax, VA 22030 USA
[2] Aptima Inc, Washington, DC USA
关键词
behavior change; computer security; password usage; security awareness training; training experiments;
D O I
10.1080/15332861.2010.487415
中图分类号
F [经济];
学科分类号
02 ;
摘要
This article presents the results of a study to determine the impact of a cyber threat education and awareness intervention on changes in user security behavior. Subjects were randomly assigned to one of two introductory lectures about cyber threats due to poor password management. The low-information condition was based on very general background information on passwords and computer security, while the high-information condition included very detailed and specific information on the threats to subjects' use of e-commerce. The pre/post-treatment design was a single, between-subjects factor (information level-low/high), repeated measures study, with password strength at Time 1 and password strength at Time 2 used to measure change in security behavior over a period of two weeks. The study found that at Time 1, participants possessed no significant differences in the strength of their passwords. Two weeks later, the password strength of the participants in the low-information condition was not statistically different than their initial levels, while subjects in the high-information condition demonstrated password ratings 36 percent stronger (t = 17.0, p = .000). It is concluded that when users were educated of the threats to e-commerce and trained about proper security practices, their behavior could be changed to enhance online security for themselves and the firms where they are employed.
引用
收藏
页码:23 / 41
页数:19
相关论文
共 50 条
  • [41] Cyber range design framework for cyber security education and training
    Katsantonis, M. N.
    Manikas, A.
    Mavridis, I.
    Gritzalis, D.
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2023, 22 (04) : 1005 - 1027
  • [42] Cyber range design framework for cyber security education and training
    M. N. Katsantonis
    A. Manikas
    I. Mavridis
    D. Gritzalis
    International Journal of Information Security, 2023, 22 : 1005 - 1027
  • [43] Exploring the influence of flow and psychological ownership on security education, training and awareness effectiveness and security compliance
    Yoo, Chul Woo
    Sanders, G. Lawrence
    Cerveny, Robert P.
    DECISION SUPPORT SYSTEMS, 2018, 108 : 107 - 118
  • [44] Emulation of Digital Substations Communication for Cyber Security Awareness
    Holik, Filip
    Yayilgan, Sule Yildirim
    Olsborg, Guro Braten
    ELECTRONICS, 2024, 13 (12)
  • [45] A Cyber Security Situational Awareness Framework to Track and Project Multistage Cyber Attacks
    Bhatt, Parth
    Yano, Edgar Toshiro
    Amorim, Joni
    Gustavsson, Per
    PROCEEDINGS OF THE 9TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS-2014), 2014, : 356 - 360
  • [46] Understanding Awareness of Cyber Security Threat Among IT Employees
    AL-Mohannadi, Hamad
    Awan, Irfan
    Al Hamar, Jassim
    Al Hamar, Yousef
    Shah, Mohammad
    Musa, Ahmad
    2018 IEEE 6TH INTERNATIONAL CONFERENCE ON FUTURE INTERNET OF THINGS AND CLOUD WORKSHOPS (W-FICLOUD 2018), 2018, : 188 - 192
  • [47] Cyber Security Situation Awareness Based on Data Mining
    Liu Jie
    Feng Xuewei
    Li Jin
    Wang Dongxia
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION APPLICATIONS (ICCIA 2012), 2012, : 254 - 258
  • [48] Cyber Security Awareness, Knowledge and Behavior: A Comparative Study
    Zwilling, Moti
    Klien, Galit
    Lesjak, Dusan
    Wiechetek, Lukasz
    Cetin, Fatih
    Basim, Hamdullah Nejat
    JOURNAL OF COMPUTER INFORMATION SYSTEMS, 2022, 62 (01) : 82 - 97
  • [49] CSAAES: An Expert System for Cyber Security Attack Awareness
    Rani, Cheshta
    Goel, Shivani
    2015 INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION & AUTOMATION (ICCCA), 2015, : 242 - 245
  • [50] On Detection and Visualization Techniques for Cyber Security Situation Awareness
    Yu, Wei
    Wei, Sixiao
    Shen, Dan
    Blowers, Misty
    Blasch, Erik P.
    Pham, Khanh D.
    Chen, Genshe
    Zhang, Hanlin
    Lu, Chao
    SENSORS AND SYSTEMS FOR SPACE APPLICATIONS VI, 2013, 8739