Suppr超能文献

远程工作员工的网络安全意识和培训 (CAT) 框架。

Cybersecurity Awareness and Training (CAT) Framework for Remote Working Employees.

机构信息

Faculty of Computers & Information Technology, University of Tabuk, Tabuk 71491, Saudi Arabia.

School of Computing, Ulster University, Belfast BT15 1ED, Northern Ireland, UK.

出版信息

Sensors (Basel). 2022 Nov 9;22(22):8663. doi: 10.3390/s22228663.

Abstract

Currently, cybersecurity plays an essential role in computing and information technology due to its direct effect on organizations' critical assets and information. Cybersecurity is applied using integrity, availability, and confidentiality to protect organizational assets and information from various malicious attacks and vulnerabilities. The COVID-19 pandemic has generated different cybersecurity issues and challenges for businesses as employees have become accustomed to working from home. Firms are speeding up their digital transformation, making cybersecurity the current main concern. For software and hardware systems protection, organizations tend to spend an excessive amount of money procuring intrusion detection systems, antivirus software, antispyware software, and encryption mechanisms. However, these solutions are not enough, and organizations continue to suffer security risks due to the escalating list of security vulnerabilities during the COVID-19 pandemic. There is a thriving need to provide a cybersecurity awareness and training framework for remote working employees. The main objective of this research is to propose a CAT framework for cybersecurity awareness and training that will help organizations to evaluate and measure their employees' capability in the cybersecurity domain. The proposed CAT framework will assist different organizations in effectively and efficiently managing security-related issues and challenges to protect their assets and critical information. The developed CAT framework consists of three key levels and twenty-five core practices. Case studies are conducted to evaluate the usefulness of the CAT framework in cybersecurity-based organizational settings in a real-world environment. The case studies' results showed that the proposed CAT framework can identify employees' capability levels and help train them to effectively overcome the cybersecurity issues and challenges faced by the organizations.

摘要

目前,由于网络安全对组织的关键资产和信息有直接影响,因此在计算和信息技术领域发挥着重要作用。网络安全应用完整性、可用性和机密性来保护组织的资产和信息免受各种恶意攻击和漏洞的侵害。由于员工已经习惯在家工作,COVID-19 大流行给企业带来了不同的网络安全问题和挑战。企业正在加快数字化转型,网络安全成为当前的主要关注点。为了保护软件和硬件系统,组织往往会花费大量资金购买入侵检测系统、防病毒软件、反间谍软件和加密机制。然而,这些解决方案还不够,由于 COVID-19 大流行期间安全漏洞不断增加,组织仍在继续面临安全风险。迫切需要为远程工作员工提供网络安全意识和培训框架。本研究的主要目的是提出一个用于网络安全意识和培训的 CAT 框架,以帮助组织评估和衡量其员工在网络安全领域的能力。拟议的 CAT 框架将帮助不同的组织有效和高效地管理与安全相关的问题和挑战,以保护其资产和关键信息。所开发的 CAT 框架由三个关键级别和二十五个核心实践组成。进行了案例研究,以评估 CAT 框架在现实环境中基于网络安全的组织环境中的有用性。案例研究的结果表明,拟议的 CAT 框架可以确定员工的能力水平,并帮助他们进行培训,以有效克服组织面临的网络安全问题和挑战。

https://cdn.ncbi.nlm.nih.gov/pmc/blobs/58c4/9695971/4a8677bec452/sensors-22-08663-g001.jpg

文献AI研究员

20分钟写一篇综述,助力文献阅读效率提升50倍。

立即体验

用中文搜PubMed

大模型驱动的PubMed中文搜索引擎

马上搜索

文档翻译

学术文献翻译模型,支持多种主流文档格式。

立即体验