{"title":"A Review of Security Awareness Approaches With Special Emphasis on Gamification","authors":"K. Sharif, S. Ameen","doi":"10.1109/ICOASE51841.2020.9436595","DOIUrl":null,"url":null,"abstract":"since the cybersecurity needs have increased, many companies have implemented awareness-raising campaigns to guarantee their workers are educated about and aware of its risks and safe operation. Technological solutions can not necessarily provide full defense on their own, since employees pose a huge threat to information security and also play an essential part in the willingness of companies to meet security protection criteria. Rising employee knowledge about the security policy of the organization plays a critical role in the successful establishment of policies. The development of diverse and useful security awareness programs remains the best way to increase security awareness. Several approaches have been used to increase security awareness and behavior among users. However, the effectiveness of these approaches remains an open question. Concepts of gamification have become more popular recently and have been used to teach people a wide variety of topics such as security awareness. This paper investigates the most recent researches on cybersecurity awareness. The paper highlights the major obstacles in successfully implementing security awareness among users together with the main factors required to aware of different peoples most effectively. Finally, the paper shows how gamification being used for security awareness among other techniques with the gaps in those methods and suggests recommendations on how to deliver information security awareness effectively.","PeriodicalId":126112,"journal":{"name":"2020 International Conference on Advanced Science and Engineering (ICOASE)","volume":"70 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2020-12-23","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"10","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2020 International Conference on Advanced Science and Engineering (ICOASE)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICOASE51841.2020.9436595","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 10
Abstract
since the cybersecurity needs have increased, many companies have implemented awareness-raising campaigns to guarantee their workers are educated about and aware of its risks and safe operation. Technological solutions can not necessarily provide full defense on their own, since employees pose a huge threat to information security and also play an essential part in the willingness of companies to meet security protection criteria. Rising employee knowledge about the security policy of the organization plays a critical role in the successful establishment of policies. The development of diverse and useful security awareness programs remains the best way to increase security awareness. Several approaches have been used to increase security awareness and behavior among users. However, the effectiveness of these approaches remains an open question. Concepts of gamification have become more popular recently and have been used to teach people a wide variety of topics such as security awareness. This paper investigates the most recent researches on cybersecurity awareness. The paper highlights the major obstacles in successfully implementing security awareness among users together with the main factors required to aware of different peoples most effectively. Finally, the paper shows how gamification being used for security awareness among other techniques with the gaps in those methods and suggests recommendations on how to deliver information security awareness effectively.