To read this content please select one of the options below:

A vocabulary test to assess information security awareness

Hennie Kruger (School of Computer, Statistical and Mathematical Sciences, North‐West University, Potchefstroom, South Africa)
Lynette Drevin (School of Computer, Statistical and Mathematical Sciences, North‐West University, Potchefstroom, South Africa)
Tjaart Steyn (School of Computer, Statistical and Mathematical Sciences, North‐West University, Potchefstroom, South Africa)

Information Management & Computer Security

ISSN: 0968-5227

Article publication date: 23 November 2010

2434

Abstract

Purpose

The dependence on human involvement and human behavior to protect information assets necessitates an information security awareness program to make people aware of their roles and responsibilities towards information security. The purpose of this paper is to examine the feasibility of an information security vocabulary test as an aid to assess awareness levels and to assist with the identification of suitable areas or topics to be included in an information security awareness program.

Design/methodology/approach

A questionnaire has been designed to test and illustrate the feasibility of a vocabulary test. The questionnaire consists of two sections – a first section to perform a vocabulary test and a second one to evaluate respondents' behavior. Two different class groups of students at a university were used as a sample.

Findings

The research findings confirmed that the use of a vocabulary test to assess security awareness levels will be beneficial. A significant relationship between knowledge of concepts (vocabulary) and behavior was observed.

Originality/value

The paper introduces a new approach to evaluate people's information security awareness levels by employing an information security vocabulary test. This new approach can assist management to plan and evaluate interventions and to facilitate best practice in information security. Aspects of cognitive psychology and language were taken into account in this research project, indicating the interaction and influence between apparently different disciplines.

Keywords

Citation

Kruger, H., Drevin, L. and Steyn, T. (2010), "A vocabulary test to assess information security awareness", Information Management & Computer Security, Vol. 18 No. 5, pp. 316-327. https://doi.org/10.1108/09685221011095236

Publisher

:

Emerald Group Publishing Limited

Copyright © 2010, Emerald Group Publishing Limited

Related articles