Download presentation
Presentation is loading. Please wait.
Published byCody Nicholson Modified over 9 years ago
1
3rd Information Security and Cyber Defence Conference Ms. Anett MÁDI-NÁTOR National Security Authority of Hungary Head of Information Security Awareness “How information security awareness programs are able to change corporate mind-set – a case study” 2013 Balatonőszöd
2
Information security awareness – a case study Multi-level awareness The case The study The evaluation The conclusion Table of contents
3
Information security awareness – a case study Priviledged users Normal users System administrators System developers Information security awareness trainers Multi-level awareness
4
Information security awareness – a case study A regionally significant service provider More than 6000 employees More than 43 million clients More than 65 million $ revenue Decision makers Users IT experts 1 month The case
5
Information security awareness – a case study Professional content of training – system hardening methods including UNIX, Windows, and network aspects Pre-session and post-session questionnaire for assessing the change of security awareness level Analysis of answers is based on statistical methods Measuring effectiveness of training itself The study
6
Willingness to participate in further information security awareness trainings
7
How safe the IT system of the company is considered by experts managing it
8
Would you introduce new/additional security measures to protect corporate business data?
9
Introducing new security measures to protect data on client phones
10
Demand for improving IT security on corporate level
11
Information security awareness – a case study Commitment to professional trainings Company IT system is considered less secure than before A more structured view of security, relying on the IT Security Dept. A more concise view of system weaknesses A need for change regarding the IT security concept The evaluation
12
Information security awareness – a case study Focus of experts moves to company- and corporate- level security from securing end-user devices Growing demand for expert knowledge transfer Solution-driven information security approach in practice The conclusion
13
3rd Information Security and Cyber Defence Conference Thank you for your attention (and the fish) 2013 Balatonőszöd
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.