首页> 外文期刊>Information & computer security >Developing cybersecurity education and awareness programmes for small- and medium-sized enterprises (SMEs)
【24h】

Developing cybersecurity education and awareness programmes for small- and medium-sized enterprises (SMEs)

机译:开发中小企业的网络安全教育和意识计划(中小企业)

获取原文
获取原文并翻译 | 示例

摘要

Purpose - The purpose of this study is to focus on organisation's cybersecurity strategy and propose a high-level programme for cybersecurity education and awareness to be used when targeting small- and medium-sized enterprises/businesses (SMEs/SMBs) at a city-level. An essential component of an organisation's cybersecurity strategy is building awareness and education of online threats and how to protect corporate data and services. This programme is based on existing research and provides a unique insight into an ongoing city-based project with similar aims. Design/methodology/approach - To structure this work, a scoping review was conducted of the literature in cybersecurity education and awareness, particularly for SMEs/SMBs. This theoretical analysis was complemented using a case study and reflecting on an ongoing, innovative programme that seeks to work with these businesses to significantly enhance their security posture. From these analyses, best practices and important lessons/recommendations to produce a high-level programme for cybersecurity education and awareness were recommended. Findings - While the literature can be informative at guiding education and awareness programmes, it may not always reach real-world programmes. However, existing programmes, such as the one explored in this study, have great potential, but there can be room for improvement. Knowledge from each of these areas can, and should, be combined to the benefit of the academic and practitioner communities. Originality/value - The study contributes to current research through the outline of a high-level programme for cybersecurity education and awareness targeting SMEs/SMBs. Through this research, literature in this space was examined and insights into the advances and challenges faced by an on-going programme were presented. These analyses allow us to craft a proposal for a core programme that can assist in improving the security education, awareness and training that targets SMEs/SMBs.
机译:目的 - 本研究的目的是专注于组织的网络安全战略,并提出在城市级别的小型企业/企业(中小企业/中小企业/中小企业)时使用的网络安全教育和意识的高级计划。组织网络安全战略的重要组成部分是建立对在线威胁的认识和教育以及如何保护公司数据和服务。该计划基于现有研究,并提供了对具有类似目标的持续城市的项目的独特洞察。设计/方法/方法 - 为了构建这项工作,在网络安全教育和意识中的文献中进行了一个范围审查,特别是对于中小企业/中小企业。这种理论分析使用案例研究和反映了持续的,创新计划的反思,寻求与这些企业合作,以大大提高其安全姿势。从这些分析中,建议,建议使用最佳实践和重要课程/建议,以生产网络安全教育和意识的高级计划。调查结果 - 虽然文献可以在引导教育和意识计划方面提供信息,但它可能并不总是达到现实世界的计划。但是,现有的计划,例如本研究中探讨的计划,具有很大的潜力,但可以有所改善。这些领域的每个地区的知识可以,应该合并为学术和从业者社区的利益。原创性/价值 - 该研究通过对网络安全教育和意识的高级计划概要有助于目前的研究,针对SMES / SMB。通过这项研究,在这个空间中的文献被审查,并介绍了持续的计划所面临的进步和挑战。这些分析允许我们为核心计划制定一项提案,可以帮助改善针对SME / SMB的安全教育,意识和培训。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号