The impact of information richness on information security awareness training effectiveness

被引:141
|
作者
Shaw, R. S. [2 ]
Chen, Charlie C. [1 ]
Harris, Albert L. [1 ]
Huang, Hui-Jou [3 ]
机构
[1] Appalachian State Univ, Dept Comp Informat Syst, Boone, NC 28608 USA
[2] Tamkang Univ, Dept Informat Management, Taipei, Taiwan
[3] HTC Corp, Taipei, Taiwan
关键词
Information richness; Information security; Security awareness; Hypermedia; Multimedia; Hypertext; SITUATION AWARENESS;
D O I
10.1016/j.compedu.2008.06.011
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
In recent years, rapid progress in the use of the internet has resulted in huge losses in many organizations due to lax security. As a result, information security awareness is becoming an important issue to anyone using the Internet. To reduce losses, organizations have made information security awareness a top priority. The three main barriers to information security awareness are: (1) general security awareness, (2) employees' computer skills, and (3) organizational budgets. Online learning appears a feasible alternative to providing information security awareness and countering these three barriers. Research has identified three levels of security awareness: perception, comprehension and projection. This paper reports on a laboratory experiment that investigates the impacts of hypermedia, multimedia and hypertext to increase information security awareness among the three awareness levels in an online training environment. The results indicate that: (1) learners who have the better understanding at the perception and comprehension levels can improve understanding at the projection level; (2) learners with text material perform better at the perception level; and (3) learners with multimedia material perform better at the comprehension level and projection level. The results could be used by educators and training designers to create meaningful information security awareness materials. (C) 2008 Elsevier Ltd. All rights reserved.
引用
下载
收藏
页码:92 / 100
页数:9
相关论文
共 50 条
  • [1] Improving Organisational Information Security Management: The Impact of Training and Awareness
    Waly, Nesren
    Tassabehji, Rana
    Kamala, Mumtaz
    2012 IEEE 14TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS & 2012 IEEE 9TH INTERNATIONAL CONFERENCE ON EMBEDDED SOFTWARE AND SYSTEMS (HPCC-ICESS), 2012, : 1270 - 1275
  • [2] A Conceptual Analysis of Information Security Education, Information Security Training and Information Security Awareness Definitions
    Amankwa, Eric
    Loock, Marianne
    Kritzinger, Elmarie
    2014 9TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2014, : 248 - 252
  • [3] Gamification of Information Security Awareness and Training
    Gjertsen, Eyvind Garder B.
    Gjaere, Erlend Andreas
    Bartnes, Maria
    Flores, Waldo Rocha
    ICISSP: PROCEEDINGS OF THE 3RD INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2017, : 59 - 70
  • [4] TRAINING IN SHAPING EMPLOYEE INFORMATION SECURITY AWARENESS
    Stefaniuk, Tomasz
    ENTREPRENEURSHIP AND SUSTAINABILITY ISSUES, 2020, 7 (03): : 1832 - 1846
  • [5] Assessment of the Impact of Information Security Awareness Training Methods on Knowledge, Attitude, and Behavior
    Alkhazi, Bader
    Alshaikh, Moneer
    Alkhezi, Sulaiman
    Labbaci, Hamza
    IEEE ACCESS, 2022, 10 : 132132 - 132143
  • [6] Impact of information security awareness on information security compliance of academic library staff in Turkiye
    Kavak, Ali
    JOURNAL OF ACADEMIC LIBRARIANSHIP, 2024, 50 (05):
  • [7] Information Security Awareness: Comparing Perceptions and Training Preferences
    Farooq, Ali
    Kakakhel, Syed Rameez Ullah
    2013 2ND NATIONAL CONFERENCE ON INFORMATION ASSURANCE (NCIA), 2013, : 53 - 57
  • [8] Recommendations for information security awareness training for college students
    Kim, E.B. (ekim@hartford.edu), 1600, JAI Press (22):
  • [9] Effectiveness of information security awareness methods based on psychological theories
    Khan, Bilal
    Alghathbar, Khaled S.
    Nabi, Syed Irfan
    Khan, Muhammad Khurram
    AFRICAN JOURNAL OF BUSINESS MANAGEMENT, 2011, 5 (26): : 10862 - 10868
  • [10] Security Culture and Security Awareness as the Basic Factors for Security Effectiveness in Health Information Systems
    Shahri, Ahmad Bakhtiyari
    Ismail, Zuraini
    Rahim, Nor Zairah Ab.
    JURNAL TEKNOLOGI, 2013, 64 (02):