Cybersecurity education and training in hospitals: Proactive resilience educational framework (Prosilience EF)

J. Rajamäki, J. Nevmerzhitskaya, Csaba Virág
{"title":"Cybersecurity education and training in hospitals: Proactive resilience educational framework (Prosilience EF)","authors":"J. Rajamäki, J. Nevmerzhitskaya, Csaba Virág","doi":"10.1109/EDUCON.2018.8363488","DOIUrl":null,"url":null,"abstract":"Healthcare is a vital component of every nation's critical infrastructure, yet it is one of the most vulnerable sector for cyber-attacks. To enforce the knowledge on information security processes and data protection procedures, educational and training schemes should be establishedfor information technology (IT) staff working in healthcare settings. However, only training IT staff is not enough, as many of cybersecurity threats are caused by human errors or lack of awareness. Current awareness and training schemes are often implemented in silos, concentrating on one aspect of cybersecurity at a time. Proactive Resilience Educational Framework (Prosilience EF) provides a holistic cyber resilience and security framework for developing and delivering a multilateral educational and training scheme based on a proactive approach to cybersecurity. The framework is built on the principle that education and training must be interactive, guided, meaningful and directly relevant to the user' operational environment. The framework addresses capacity mapping, cyber resilience level measuring, utilizing available and mapping missing resources, adaptive learning technologies and dynamic content delivery. Prosilience EF launches an iterative process of awareness and training development with relevant stakeholders (end users — hospitals, healthcare authorities, cybersecurity training providers, industry members), evaluating the framework via joint exercises/workshops andfurther developing the framework.","PeriodicalId":102826,"journal":{"name":"2018 IEEE Global Engineering Education Conference (EDUCON)","volume":"32 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-04-17","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"24","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 IEEE Global Engineering Education Conference (EDUCON)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/EDUCON.2018.8363488","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 24

Abstract

Healthcare is a vital component of every nation's critical infrastructure, yet it is one of the most vulnerable sector for cyber-attacks. To enforce the knowledge on information security processes and data protection procedures, educational and training schemes should be establishedfor information technology (IT) staff working in healthcare settings. However, only training IT staff is not enough, as many of cybersecurity threats are caused by human errors or lack of awareness. Current awareness and training schemes are often implemented in silos, concentrating on one aspect of cybersecurity at a time. Proactive Resilience Educational Framework (Prosilience EF) provides a holistic cyber resilience and security framework for developing and delivering a multilateral educational and training scheme based on a proactive approach to cybersecurity. The framework is built on the principle that education and training must be interactive, guided, meaningful and directly relevant to the user' operational environment. The framework addresses capacity mapping, cyber resilience level measuring, utilizing available and mapping missing resources, adaptive learning technologies and dynamic content delivery. Prosilience EF launches an iterative process of awareness and training development with relevant stakeholders (end users — hospitals, healthcare authorities, cybersecurity training providers, industry members), evaluating the framework via joint exercises/workshops andfurther developing the framework.
医院网络安全教育与培训:主动应变教育框架(profilience EF)
医疗保健是每个国家关键基础设施的重要组成部分,但它是最容易受到网络攻击的部门之一。为了加强对信息安全流程和数据保护程序的了解,应该为在医疗保健环境中工作的信息技术(IT)人员建立教育和培训计划。然而,仅仅培训IT人员是不够的,因为许多网络安全威胁是由人为错误或缺乏意识造成的。目前的意识和培训计划往往是孤立的,一次只关注网络安全的一个方面。主动弹性教育框架(profilience EF)提供了一个全面的网络弹性和安全框架,用于开发和提供基于主动网络安全方法的多边教育和培训计划。该框架建立在教育和培训必须是相互作用的、有指导的、有意义的和与用户的业务环境直接相关的原则之上。该框架涉及能力映射、网络弹性水平测量、利用现有资源和映射缺失资源、自适应学习技术和动态内容交付。profilence EF与相关利益相关者(最终用户——医院、医疗机构、网络安全培训提供商、行业成员)一起启动了意识和培训发展的迭代过程,通过联合演习/研讨会评估框架,并进一步发展框架。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信