People Are the Answer to Security: Establishing a Sustainable Information Security Awareness Training (ISAT) Program in Organization

نویسندگان

  • Oyelami Julius Olusegun
  • Norafida Ithnin
چکیده

Educating the users on the essential of information security is very vital and important to the mission of establishing a sustainable information security in any organization and institute. At the University Technology Malaysia (UTM), we have recognized the fact that, it is about time information security should no longer be a lacking factor in productivity, both information security and productivity must work together in closed proximity. We have recently implemented a broad campus information security awareness program to educate faculty member, staff, students and non-academic staff on this essential topic of information security. The program consists of training based on web, personal or individual training with a specific monthly topic, campus campaigns, guest speakers and direct presentations to specialized groups. The goal and the objective are to educate the users on the challenges that are specific to information security and to create total awareness that will change the perceptions of people thinking and ultimately their reactions when it comes to information security. In this paper, we explain how we created and implemented our information security awareness training (ISAT) program and discuss the impediment we encountered along the process. We explore different methods of deliveries such as target audiences, and probably the contents as we believe might be vital to a successful information security program. Finally, we discuss the importance and the flexibility of establishing a sustainable information security training program that could be adopted to meet current and future needs and demands while still relevant to our current users. CATEGORIES AND SUBJECT DESCRIPTORS [Computer and Education]: Computer and Information Security Education [Management of Computing and Information Systems]: Security and Protection General Terms: Information Security, Human Factors, Management and Education

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Awareness Training Transfer and Information Security Content Development for Healthcare Industry

Electronic Health Record (EHR) becomes increasingly pervasive and the need to safeguard EHR becomes more vital for healthcare organizations. Human error is known as the biggest threat to information security in Electronic Health Systems that can be minimized through awareness training programs. There are various techniques available for awareness of information security. However, research is sc...

متن کامل

The Impact of Information Security Awareness Training on Information Security Behaviour: The Case for Further Research

Information Security awareness initiatives are seen as critical to any information security programme. But, how do we determine the effectiveness of these awareness initiatives? We could get our employees to write a test afterwards to determine how well they understand the policies, but this does not show how it affects the employee’s on the job behaviour. Does awareness training have a direct ...

متن کامل

The Study of Effective Factors with Emphasis on Training for Employees' Empowerment in Center for Medical Documents in Social Security Organization

In an organization, human resources are known as a valuable and lasting capital. In order to get the most out of these resources, employees' empowerment appeared in the management literature. Empowerment refers to the delegation of authority in order to lay appropriate ground for self-motivation and self-efficacy among employees.The main aim of this study was to explore the effective factors, e...

متن کامل

Designing a career path model based on knowledge management model in Mazandaran Social Security Organization

Background and Aim: Knowledge management is the cycle of discovery, production, storage, distribution, and practical application of knowledge in the organization. Occurs. Work experiences, social groups, and outcomes that determine the path to progress may be limited (in the form of a profession or organization) or broad (the path to progress in society in a wide range of different professions ...

متن کامل

Identifying the effective factors and components in transferring learning to the work environment in in-service training of nurses in hospitals affiliated to the Social Security Organization

Background: The aim of this qualitative study was identifying the effective factors and components in transferring learning to the work environment in in-service training of nurses in hospitals affiliated to the Social Security Organization. Materials and methods: The  method was exploratory research and Data analysis was fundamental.  The sample includes 35 members of hospital supervisor...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:
  • CoRR

دوره abs/1309.0188  شماره 

صفحات  -

تاریخ انتشار 2013