Deciding on Cybersecurity Awareness Initiatives: Insights from the Public Sector
2024 (English)Independent thesis Basic level (degree of Bachelor), 10 credits / 15 HE credits
Student thesis
Abstract [en]
With the public sector becoming increasingly dependent on IT systems to function, cyberattacks are becoming a societal threat. This makes preventative measures more important than ever, ensuring that important systems are kept secure. Decision-makers need to adopt robust and effective measures to educate employees in cybersecurity awareness.
The study aims to improve the understanding of what factors influence the decision-making process in adopting new cybersecurity awareness-raising methods. Furthermore, the study also aims to identify what factors increase the rates of success for cybersecurity awareness raising methods.
Data was collected through semi-structured interviews with 12 respondents employed in a position capable of making IT-security related decisions in the public sector. The data was then coded using both a deductive process based on previous research and an inductive process aimed at finding new factors.
The deductive process identified nine factors used in SETA tool adoption. The results validated previous research but found that the Swedish public sector prioritizes them differently, where the most important factors were found to be ease of use, quality of content, customization and integration. The study also found one new decision-making factor defined as resources and three success factors, Effect of Employee Understanding Regarding Cybersecurity, On-Site Management and Decision Makers.
Place, publisher, year, edition, pages
2024. , p. 53
National Category
Information Systems
Identifiers
URN: urn:nbn:se:hj:diva-65132OAI: oai:DiVA.org:hj-65132DiVA, id: diva2:1874104
Subject / course
JTH, Computer Engineering
Supervisors
Examiners
2024-07-022024-06-192025-10-13Bibliographically approved