Ac 2007-2158: the Role of Information Warfare in Information Assurance Education: a Legal and Ethical Perspective
نویسندگان
چکیده
Typically, information assurance (IA) professionals utilize information warfare (IW) techniques learned in professional development courses when performing vulnerability and security assessments. With cyber crime on the rise, both government and industry have come to rely on academia to properly train future IA professionals, reducing the need for professional developmental courses. This presents a topic for debate since there is some disagreement if it is legally or ethically appropriate to teach IW techniques in an academic setting due to the many risks involved. In order to address the questions raised by teaching these skills, we examine the legal and ethical responsibilities of IA professionals and how this affects educational programs. We identify several key knowledge areas and skill sets that IA professionals require and examine the benefits and risks that are associated with teaching these skills. The legal aspects of the issue are addressed by examining important computer security laws, such as the Health Insurance Portability and Accountability Act (HIPAA), the Sarbanes-Oxley (SOX) Act and the Federal Criminal Code, and how they affect education at the institution, instructor and student level. Evaluation of the ethical issues is done by using the ACM Code of Ethics as well as two ethical theories: utilitarianism, based on maximizing the good consequences for society; and deontology, where ethical actions are based on an individual's duties and the rights of others. We conclude by offering our recommendations for creating an IA program by addressing the need for cyber defense exercises and test-bed environments. In addition, we provide some topics for consideration on how to safely teach these skills and reduce the possibility of an incident.
منابع مشابه
Peer Review – Legal and Ethical Issues Faced by Medical Staff: The Mandate for Physician Leadership
Physicians working in hospitals face challenges when it comes to understanding and meeting the medical, legal, and ethical subjects outlined in the hospital bylaws. Hospital staff physicians and the hospital administration both aspire for high quality medical care and the assurance of patient safety. Unfortunately, when quality concerns surface, there can be reasonable differences of opinion as...
متن کاملIntegration of Business Sustainability Education into the Business Curriculum
Business sustainability in all dimensions of economic, governance, social, ethical, and environmental (EGSEE) performance is gaining acceptance as many global stock exchanges either encourage or require their listed companies to issue sustainability reports and investors worldwide demand sustainability performance information. More than 8, 000 companies worldwide are disclosing various EGSEE di...
متن کاملA Framework for Information Security Ethics Education
Center for Research and Education in Information Assurance and Security, Purdue University, West Lafayette, IN 47907. [email protected] Abstract This paper proposes a framework for teaching information security ethics at colleges and universities. The framework requires that students examine information security ethics from four dimensions: the ethical dimension, the security dimension, the solut...
متن کاملCompetent Authorities to Handle Complaints about Incorrect Tax Assessment and Collection with an Ethical Approach in Iran
Background: Retrial is an additional combination of the words "retrial" and "trial". Trial is a means of justice and trial, like others, is in the introduction of error and error if there is a verdict that is accompanied by error as a result of the trial. Which must be reconsidered. In the relations between taxpayers and the tax system, a dispute is possible, which can be due to factors such as...
متن کاملInformation Warfare in the Trenches
With the increased potential of a bona fide cyber terrorist attack and the possibility of a future “war in the wires”, we must continue to improve the education and training of individuals responsible for defending our national borders—whether those borders are physical or electronic. The Information Analysis and Research (IWAR) laboratory at the United States Military Academy (USMA) has proven...
متن کامل