The Utility of Information Security Training and Education on Cybersecurity Incidents: An empirical evidence

被引:0
|
作者
Eunkyung Kweon
Hansol Lee
Sangmi Chai
Kyeongwon Yoo
机构
[1] Ewha Womans University,
[2] Sangmyung University,undefined
来源
关键词
Information security incidents; Information security training; Information security management; Poisson regression analysis;
D O I
暂无
中图分类号
学科分类号
摘要
As recent cyber-attacks have been increasing exponentially, the importance of security training for employees also has become growing ever than before. In addition, it is suggested that security training and education be an effective method for discerning cyber-attacks within academia and industries. Despite the importance and the necessity of the training, prior study did not investigate the quantitative utility of security training in an organizational level. Due to the absence of referential studies, many firms are having troubles in making decisions with respect to arranging optimal security training programs with limited security budgets. The main objective of this study is to find out a relationship between cybersecurity training and the number of incidents of organizations. Thus, this study quantified the effectiveness of security training on security incidents as the first study. This research examined the relationship among three main factors; education time, education participants, and outsourcing with numbers of cybersecurity incidents. 7089 firm level data is analyzed through Poisson regression method. Based on analysis results, we found that the negative relationship between security trainings and the occurrence of cybersecurity incidents. This study sheds light on the role of security training and education by suggesting its positive association with reducing the number of incidents in organizations from the quantitative perspective. The result of this study can be used as a referential guide for information security training decision-making procedure in organizations.
引用
收藏
页码:361 / 373
页数:12
相关论文
共 50 条
  • [31] Cybersecurity Education and Training and its Reliance on STEAM
    LeClair, Jane
    Hollis, Katherine M.
    Pheils, Denise M.
    2014 IEEE INTEGRATED STEM EDUCATION CONFERENCE (ISEC), 2014,
  • [32] Cybersecurity Education and Training Support System: CyRIS
    Beuran, Razvan
    Cuong Pham
    Tang, Dat
    Chinen, Ken-ichi
    Tan, Yasuo
    Shinoda, Yoichi
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2018, E101D (03): : 740 - 749
  • [33] An Empirical Investigation of Agile Information Systems Development for Cybersecurity
    Ardo, Abdulhamid A.
    Bass, Julian M.
    Gaber, Tarek
    INFORMATION SYSTEMS (EMCIS 2021), 2022, 437 : 567 - 581
  • [34] Security of Smart Grid: Cybersecurity Issues, Potential Cyberattacks, Major Incidents, and Future Directions
    Alomari, Mohammad Ahmed
    Al-Andoli, Mohammed Nasser
    Ghaleb, Mukhtar
    Thabit, Reema
    Alkawsi, Gamal
    Alsayaydeh, Jamil Abedalrahim Jamil
    Gaid, AbdulGuddoos S. A.
    ENERGIES, 2025, 18 (01)
  • [35] Leveraging Information Security Continuous Monitoring to Enhance Cybersecurity
    AlSadhan, Tina
    Park, Joon S.
    2021 INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND COMPUTATIONAL INTELLIGENCE (CSCI 2021), 2021, : 753 - 759
  • [36] Shifting from Information Security towards a Cybersecurity Paradigm
    Althonayan, Abraham
    Andronache, Alina
    ICIME 2018: PROCEEDINGS OF THE 2018 10TH INTERNATIONAL CONFERENCE ON INFORMATION MANAGEMENT AND ENGINEERING, 2018, : 68 - 79
  • [37] Teaching Java']Java Security to Enhance Cybersecurity Education
    Haywood, Adley
    Yu, Huiming
    Yuan, Xiaohong
    2013 PROCEEDINGS OF IEEE SOUTHEASTCON, 2013,
  • [38] Collaborative Operational Security: The future of Cybersecurity for Research and Education
    Crooks, David
    Acris, James
    Atherton, Liam
    Clark, Paul
    Cutrina, Pau
    Jordan, David
    McKee, Shawn
    Valsan, Liviu
    26TH INTERNATIONAL CONFERENCE ON COMPUTING IN HIGH ENERGY AND NUCLEAR PHYSICS, CHEP 2023, 2024, 295
  • [39] Healthcare Security : A course engaging females in cybersecurity education
    Ghosh, Krishnendu
    FRONTIERS IN EDUCATION CONFERENCE (FIE), 2015, 2015, : 830 - 833
  • [40] Empirical Research in Information Security
    Weippl, Edgar
    16TH INTERNATIONAL CONFERENCE ON INFORMATION INTEGRATION AND WEB-BASED APPLICATIONS & SERVICES (IIWAS 2014), 2014, : 4 - 4