A Framework for Information Security Awareness Programs
نویسنده
چکیده
The importance of information security cannot be overemphasized in today’s networked corporate world. A major component of reducing the risk of security breach in information assets is by implementing an effective security awareness program in organizations. Empirical data for this research is based on a study of two highly regulated industries – Banking and Insurance in Puerto Rico Metropolitan Area. In this paper, we look into the various factors that go into the designing an effective security awareness program and how such a program can help companies reduce the risk of security breach. Management support is very important for the success of the program. We analyze methods for building a successful security awareness program and present a set of recommendations for strengthening the program.
منابع مشابه
A Framework for an Effective Information Security Awareness Program in Healthcare
Electronic Health Record (EHR) is a valuable asset of every healthcare and it needs to be protected. Human errors are recognized as the major information security threats to EHR systems. Employees who interact with EHR systems should be trained about the risks and hazards related to information security. However, there are limited studies regarding the effectiveness of training programs. The ai...
متن کاملAwareness Training Transfer and Information Security Content Development for Healthcare Industry
Electronic Health Record (EHR) becomes increasingly pervasive and the need to safeguard EHR becomes more vital for healthcare organizations. Human error is known as the biggest threat to information security in Electronic Health Systems that can be minimized through awareness training programs. There are various techniques available for awareness of information security. However, research is sc...
متن کاملIdentifying Information Security Risk Components in Military Hospitals in Iran
Background and Aim: Information systems are always at risk of information theft, information change, and interruptions in service delivery. Therefore, the present study was conducted to develop a model for identifying information security risk in military hospitals in Iran. Methods: This study was a qualitative content analysis conducted in military hospitals in Iran in 2019. The sample consist...
متن کاملA Framework for Evaluating ICT Security Awareness
ICT resources are important assets of any organization and the protection of these resources are equally important. To be able to protect themselves and their profitability, many organizations have established information security awareness programs. In order for a security awareness program to add value to an organization and at the same time make a contribution to the field of information sec...
متن کاملImplementation Challenges for Information Security Awareness Initiatives in E-Government
With the widespread adoption of electronic government services, there has been a need to ensure a seamless flow of information across public sector organizations, while at the same time, maintaining confidentiality, integrity and availability. Governments have put in place various initiatives and programs including information security awareness to provide the needed understanding on how public...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2010