首页> 外文会议>Cybersecurity and Cyberforensics Conference >Challenges of Implementing Training and Awareness Programs Targeting Cyber Security Social Engineering
【24h】

Challenges of Implementing Training and Awareness Programs Targeting Cyber Security Social Engineering

机译:针对网络安全社会工程实施培训和意识计划的挑战

获取原文

摘要

Information security is one of the growing sources of concern that organizations are dealing with today. With increased levels of sophistication of social engineering threats, the exploits from such attacks are evolving. This study highlights some of the challenges that organizations encounter in the process of developing the human knowledge to fight against social engineering attacks. Despite state-of-the-art cyber security preparations and trained personnel, hackers are still successful in their malicious acts of stealing sensitive information that is crucial to organizations. This study further discusses the need for human resource departments to impose training requirements for new hires as part of onboarding processes. The factors influencing users' proficiency in the process of threat detection and mitigation have been identified as business environmental, social, political, constitutional, organizational, economical, and personal. Challenges with respect to both traditional and modern tools have been analyzed to suggest the need for profiling at-risk employees and developing training programs at each level of the hierarchy to ensure that the hackers do not succeed.
机译:信息安全性是当今组织日益关注的问题之一。随着社会工程学威胁复杂程度的提高,来自此类攻击的攻击也在不断发展。这项研究突出了组织在开发人类知识以对抗社会工程学攻击过程中遇到的一些挑战。尽管有最先进的网络安全准备和训练有素的人员,但黑客仍然能够成功地通过恶意行为窃取对组织至关重要的敏感信息。这项研究进一步讨论了人力资源部门在入职流程中对新员工施加培训要求的必要性。在威胁检测和缓解过程中,影响用户熟练程度的因素已确定为商业环境,社会,政治,宪法,组织,经济和个人。分析了传统工具和现代工具的挑战,表明有必要对有风险的员工进行分析,并在层次结构的每个级别上开发培训计划,以确保黑客不会成功。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号