security awareness training
Security awareness training is a formal process for educating employees about computer security.
A good security awareness program should educate employees about corporate policies and procedures for working with information technology (IT). Employees should receive information about who to contact if they discover a security threat and how to handle confidential information. Regular training is particularly necessary in organizations with high turnover rates and those that rely heavily on contract or temporary staff. Confirming how well the awareness program is working can be difficult. The most common metric looks for a downward trend in the number of incidents over time.
The National Institute of Standards and Technology (NIST) has an excellent publication with templates and guides for what should go into a security awareness training program. The 70-page document is available for free in PDF format from the institute's Web site.
This was last updated in November 2011
Email Alerts
Register now to receive SearchConsumerization.com-related news, tips and more, delivered to your inbox.
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States.
Privacy
Dig Deeper
-
A BYOD policy is critical for any organization that allows consumer devices on the network. Defining and enforcing policies can prevent problems that come in the BYOD era.
-
With so many workers on the go today, training mobile employees in the arts of device security and protecting data can help ensure the safety of corporate data.
-
There are lots of tools available for mobile endpoint security and management, but few offer the total solution. That leaves VARs with lots of work to do.
-
People who read this also read...
-
Resources from around the Web
Join the conversationComment
Share
Comments
Results
Contribute to the conversation