A Data-driven Security Game to Facilitate Information Security Education

被引:2
|
作者
Lovgren, Dag Erik Homdrum [1 ]
Li, Jingyue [2 ]
Oyetoyan, Tosin Daniel [3 ]
机构
[1] Acando AS, Digital Core Trondheim, Trondheim, Norway
[2] Norwegian Univ Sci & Technol, Dept Comp Sci, Trondheim, Norway
[3] Western Norway Univ Appl Sci, Dept Comp Math & Phys, Bergen, Norway
关键词
Information security; serious game; game-based education;
D O I
10.1109/ICSE-Companion.2019.00102
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Many universities have started to educate students on how to develop secure software and systems. One challenge of teaching information security is that the curriculum can easily be outdated, because new attacks and mitigation approaches arise. It is therefore necessary to provide software developers with methods and tools that are attractive (e.g., computer games) for self-study and up-to-date information security knowledge during and after the university education. This paper presents an on-going study to develop an educational game to facilitate information security education. The game is developed as a single player Tower Defense (TD) game. The educational goal of the game is to teach developers, who are not security experts, how to choose proper mitigation strategies and patterns to defend against various security attack scenarios. One key benefit of our game is that it is data driven, meaning, it can continuously fetch data from relevant security-based online sources (e.g., Common Attack Pattern Enumeration Classification CAPEC) to stay up to date with any new information. This is done automatically. We evaluated the game by letting students play it and give comments. Evaluation results show that the game can facilitate students learning of mitigation strategies to defend against attack scenarios.
引用
收藏
页码:256 / 257
页数:2
相关论文
共 50 条
  • [31] CIAM: A Data-Driven Approach for Selecting and Prioritizing Security Controls
    Llanso, Thomas
    2012 IEEE INTERNATIONAL SYSTEMS CONFERENCE (SYSCON), 2012, : 91 - 98
  • [32] EDUCATION IN INFORMATION SECURITY
    Soltes, Viktor
    Misik, Jan
    Kubas, Jozef
    Stofkova, Zuzana
    INTED2016: 10TH INTERNATIONAL TECHNOLOGY, EDUCATION AND DEVELOPMENT CONFERENCE, 2016, : 4418 - 4424
  • [33] Education in information security
    Tripathi, A
    IEEE CONCURRENCY, 2000, 8 (04): : 4 - 8
  • [34] A Conceptual Analysis of Information Security Education, Information Security Training and Information Security Awareness Definitions
    Amankwa, Eric
    Loock, Marianne
    Kritzinger, Elmarie
    2014 9TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2014, : 248 - 252
  • [35] Information Security Methodology, Replication Studies and Information Security Education
    Wendzel, Steffen
    Caviglione, Luca
    Checco, Alessandro
    Mileva, Aleksandra
    Lalande, Jean-Francois
    Mazurczyk, Wojciech
    JOURNAL OF UNIVERSAL COMPUTER SCIENCE, 2020, 26 (07) : 762 - 763
  • [36] Data-Driven Innovations and Sustainability of Food Security: Can Asymmetric Information Be Blamed for Food Insecurity in Africa?
    Agunyai, Samuel Chukwudi
    Ojakorotu, Victor
    SUSTAINABILITY, 2024, 16 (20)
  • [37] Information Security Awareness on Data Privacy in Higher Education
    Runtuwene, Julyeta Paulina
    Mege, Revolson A.
    Palilingan, Verry Ronny
    Batmetan, Johan Reimon
    PROCEEDINGS OF THE 5TH UPI INTERNATIONAL CONFERENCE ON TECHNICAL AND VOCATIONAL EDUCATION AND TRAINING (ICTVET 2018), 2018, 299 : 172 - 174
  • [38] A game of information security investment considering security insurance and complementary information assets
    Qian, Xiaofei
    Yang, Wujuan
    Pei, Jun
    Liu, Xinbao
    Pardalos, Panos M.
    INTERNATIONAL TRANSACTIONS IN OPERATIONAL RESEARCH, 2022, 29 (03) : 1791 - 1824
  • [39] Cybersecurity in Big Data Era: From Securing Big Data to Data-Driven Security
    Rawat, Danda B.
    Doku, Ronald
    Garuba, Moses
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2021, 14 (06) : 2055 - 2072
  • [40] Data-driven Selection of Security Application Frameworks During Architectural Design
    Cervantes, Humberto
    Kazman, Rick
    Ryoo, Jungwoo
    Cho, Junsung
    Cho, Geumhwan
    Kim, Hyoungshick
    Kang, Jina
    PROCEEDINGS OF THE 52ND ANNUAL HAWAII INTERNATIONAL CONFERENCE ON SYSTEM SCIENCES, 2019, : 7331 - 7340