Personalising information security education

نویسنده

  • Shuhaili Talib
چکیده

Personalising Information Security Education Shuhaili Talib Whilst technological solutions go a long way in providing protection for users online, it has been long understood that the individual also plays a pivotal role. Even with the best of protection, an illinformed person can effectively remove any protection the control might provide. Information security awareness is therefore imperative to ensure a population is well educated with respect to the threats that exist to one’s electronic information, and how to better protect oneself. Current information security awareness strategies are arguably lacking in their ability to provide a robust and personalised approach to educating users, opting for a blanket, one-size-fits-all solution. This research focuses upon achieving a better understanding of the information security awareness domain; appreciating the requirements such a system would need; and importantly, drawing upon established learning paradigms in seeking to design an effective personalised information security education. A survey was undertaken to better understand how people currently learn about information security. It focussed primarily upon employees of organisations, but also examined the relationship between work and home environments and security practice. The survey also focussed upon understanding how people learn and their preferences for styles of learning. The results established that some good work was being undertaken by organisations in terms of security awareness, and that respondents benefited from such training – both in their workplace and also at home – with a positive relationship between learning at the workplace and practise at home. The survey highlighted one key aspect for both the training provided and the respondents’ preference for learning styles. It varies. It is also clear, that it was difficult to establish the effectiveness of such training and the impact upon practice. The research, after establishing experimentally that personalised learning was a viable approach, proceeded to develop a model for information security awareness that utilised the already successful field of pedagogy and individualised learning. The resulting novel framework “Personalising Information Security Education (PISE)” is proposed. The framework is a holistic approach to solving the problem of information security awareness that can be applied both in the workplace environment and as a tool for the general public. It does not focus upon what is taught, but rather, puts into place the processes to enable an individual to develop their own information security personalised learning plan and to measure their progress through the learning experience.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Personalising Learning in Teacher Education through the use of Technology

The meaningful integration of technology in teaching and learning is consistently called for in all sectors of education. Recently it has appeared as a key tenet for achieving what has been termed as personalising learning. Personalising learning, a concept that addresses a range of current best-practice approaches with an added emphasis on ICT and the voice of individual learners, is becoming ...

متن کامل

Personalising the is Classroom - Insights on Course Design and Implementation

Personalising learning is one major avenue to address the increasing heterogeneity in today’s (higher) education institutions. The present study discusses the design and implementation of a selfregulated, personalised flipped classroom course within the IS curriculum of a German university. Following a design-based research methodology, relevant kernel theories are identified to derive general ...

متن کامل

Identifying Information Security Risk Components in Military Hospitals in Iran

Background and Aim: Information systems are always at risk of information theft, information change, and interruptions in service delivery. Therefore, the present study was conducted to develop a model for identifying information security risk in military hospitals in Iran. Methods: This study was a qualitative content analysis conducted in military hospitals in Iran in 2019. The sample consist...

متن کامل

Horizon scanning implanted biosensors in personalising breast cancer management: First pilot study of breast cancer patients views

1 Innogen Institute, The University of Edinburgh, Edinburgh, Scotland Science, Technology and Innovation Studies, The University of Edinburgh, Edinburgh, Scotland 3 Institute for Bioengineering, School of Engineering, University of Edinburgh, Edinburgh, Scotland Edinburgh Cancer Research Centre, Institute of Genetic and Molecular Medicine, Western General Hospital, Edinburgh, Scotland Correspon...

متن کامل

Personalising the Museum Experience

Visitors to physical museums are often overwhelmed by the vast amount of information available in the space they are exploring, making it difficult to select personally interesting content. In contrast to visits to online museum collections, the selection process is complicated by the facts that (1) it takes time for people to move between exhibits; and (2) exhibitions may be arranged in a way ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2014