Maintaining Cybersecurity Awareness in Large-Scale Organizations: A Pilot Study in a Public Institution

Maintaining Cybersecurity Awareness in Large-Scale Organizations: A Pilot Study in a Public Institution

Copyright: © 2023 |Pages: 27
ISBN13: 9781668482186|ISBN10: 1668482185|ISBN13 Softcover: 9781668482193|EISBN13: 9781668482209
DOI: 10.4018/978-1-6684-8218-6.ch009
Cite Chapter Cite Chapter

MLA

Aslan, Muhammed, and Tolga Pusatli. "Maintaining Cybersecurity Awareness in Large-Scale Organizations: A Pilot Study in a Public Institution." Perspectives on Ethical Hacking and Penetration Testing, edited by Keshav Kaushik and Akashdeep Bhardwaj, IGI Global, 2023, pp. 212-238. https://doi.org/10.4018/978-1-6684-8218-6.ch009

APA

Aslan, M. & Pusatli, T. (2023). Maintaining Cybersecurity Awareness in Large-Scale Organizations: A Pilot Study in a Public Institution. In K. Kaushik & A. Bhardwaj (Eds.), Perspectives on Ethical Hacking and Penetration Testing (pp. 212-238). IGI Global. https://doi.org/10.4018/978-1-6684-8218-6.ch009

Chicago

Aslan, Muhammed, and Tolga Pusatli. "Maintaining Cybersecurity Awareness in Large-Scale Organizations: A Pilot Study in a Public Institution." In Perspectives on Ethical Hacking and Penetration Testing, edited by Keshav Kaushik and Akashdeep Bhardwaj, 212-238. Hershey, PA: IGI Global, 2023. https://doi.org/10.4018/978-1-6684-8218-6.ch009

Export Reference

Mendeley
Favorite

Abstract

Research was conducted to increase the awareness of employees with regard to cyber security to fill the gap in the literature where few studies on how effective the measures implemented in organizations were reported. This research uses the outcome of the phishing drills that a public institution applied to its personnel, participation of said personnel in awareness training, and the reading statistics of regularly published information security bulletins. This has been beneficial in determining the methods to increase the cyber security awareness of personnel in organizations with 1,000 or more personnel; users were considered as a whole, and not individually evaluated. Findings report that organizations can increase users' cybersecurity awareness by systematically conducting phishing exercises, providing awareness training, and regularly publishing information security bulletins. The awareness of reading bulletins rapidly increased after phishing exercises and training and decreased in the following months; however, an increase was observed in the long term.

Request Access

You do not own this content. Please login to recommend this title to your institution's librarian or purchase it from the IGI Global bookstore.