首页> 外文期刊>Computers & Security >'Get a red-hot poker and open up my eyes, it's so boring': Employee perceptions of cybersecurity training
【24h】

'Get a red-hot poker and open up my eyes, it's so boring': Employee perceptions of cybersecurity training

机译:“拿一个红热的扑克并睁开眼睛,这是如此无聊”:员工对网络安全培训的看法

获取原文
获取原文并翻译 | 示例
           

摘要

Organisations and security professionals design Security Education, Training, and Awareness (SETA) programs to improve cybersecurity behaviour, but they are often poorly received by employees. To understand employee negative perceptions of SETA programs, we conducted in-depth interviews with 20 Australian employees regarding their experiences with both SETA programs and non-cybersecurity related workplace training. As expected, employees had a generally poor view of SETA programs. They reported that the same factors that are important for effective non-cybersecurity training are also important for SETA programs, such as management role modelling and well-designed workplace systems. However, the level of importance of these factors differed across the two contexts. For example, employees indicated that the misbehaviour of their colleagues is a more important factor for their appraisal of a SETA program than it is for a non-cybersecurity workplace training program. Our results suggest that employee perceptions of SETA programs relate to their previously held beliefs about cybersecurity threats, the content and delivery of the training program, the behaviour of others around them, and features of their organisation. From an applied perspective, these findings can explain why employees often do not engage with cybersecurity training material, and how their current beliefs can influence their receptivity for future training.
机译:组织和安全专业人员设计安全教育,培训和意识(SETA)计划,以提高网络安全行为,但员工通常不足。要了解员工对Seta计划的负面看法,我们深入了解与20名澳大利亚雇员有关Seta计划和非网络安全相关工作场所培训的经验。正如预期的那样,员工对Seta计划的看法普遍不佳。他们报告说,对于有效的非网络安全培训很重要的因素对Seta计划也很重要,例如管理角色建模和精心设计的工作场所系统。但是,这些因素的重要性程度不同于两种情况。例如,员工表明,他们的同事的不端行为是他们对Seta程序评估的更重要的因素,而不是非网络安全工作场所培训计划。我们的研究结果表明,员工对其先前持有关于网络安全威胁,培训方案的内容和交付的员工的看法与其周围的其他人的行为以及其组织的特征。从应用的角度来看,这些调查结果可以解释为什么员工通常不会与网络安全培训材料进行啮合,以及他们目前的信仰如何影响他们未来培训的接受性。

著录项

  • 来源
    《Computers & Security》 |2021年第7期|102281.1-102281.13|共13页
  • 作者

    A Reeves; D Calic; P Delfabbro;

  • 作者单位

    School of Psychology University of Adelaide South Australia;

    Defence Science and Technology Group Edinburgh South Australia;

    School of Psychology University of Adelaide South Australia;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号