The role of national cybersecurity strategies on the improvement of cyb ersecurity e ducation

被引:49
作者
AlDaajeh, Saleh [1 ]
Saleous, Heba [1 ]
Alrabaee, Saed [1 ]
Barka, Ezedin [1 ]
Breitinger, Frank [2 ]
Choo, Kim-Kwang Raymond [3 ]
机构
[1] United Arab Emirates Univ, Informat Syst & Secur, Al Ain, U Arab Emirates
[2] Univ Lausanne, Sch Criminal Sci, CH-1015 Lausanne, Switzerland
[3] Univ Texas San Antonio, Dept Informat Syst & Cyber Secur, San Antonio, TX 78249 USA
关键词
Cybersecurity strategic plan; Cybersecurity education; NICE framework; Cybersecurity curricula; GQO plus Strategies paradigm; CRITICAL INFRASTRUCTURE; METHODOLOGY; EDUCATION;
D O I
10.1016/j.cose.2022.102754
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Digital information and telecommunication technologies have not only become essential to individuals' daily lives but also to a nation's sustained economic growth, societal well-being, critical infrastructure resilience, and national security. Consequently, the protection of a nation's cyber sovereignty from malicious acts is a major concern. This signifies the importance of cybersecurity education in facilitating the creation of a resilient cybersecurity ecosystem and in supporting cyber sovereignty. This study reviews a sample from world-leading countries National Cybersecurity Strategic Plans (NCSPs) and analyzes the associated existing cybersecurity education and training improvement initiatives. Furthermore, a proposal to adopt the Goal-Question-Outcomes(GQO)+Strategies paradigm into cybersecurity education and training programs curricula improvement to national cybersecurity strategic goals is presented. The proposal maps cybersecurity strategic goals to cybersecurity skills and competencies using the National Initiative for Cybersecurity Education (NICE) framework. The newly proposed cybersecurity education and training programs' curricula learning outcomes were generated from the GQO+Strategies paradigm based on the three major cybersecurity strategic goals: Development of secure digital and information technology infrastructure and services, defending from sophisticated cyber threats, and enrichment of individuals' cybersecurity maturity and awareness. It is highly recommended that cybersecurity university program administrators utilize the proposed GQO+Strategies to align their program's curriculum to NCSP. Hence, closing the gap that exists with the relevant skills and sustain national cybersecurity workforces. (c) 2022 Elsevier Ltd. All rights reserved.
引用
收藏
页数:21
相关论文
共 100 条
[1]  
Adamson K, 2019, STRATEGY MAPPING ESS
[2]   Peer Instruction Teaching Methodology for Cybersecurity Education [J].
Ahmed, Irfan ;
Roussev, Vassil .
IEEE SECURITY & PRIVACY, 2018, 16 (04) :88-91
[3]  
Alsmadi I, 2020, NICE CYBER SECURITY
[4]  
Alsmadi I, 2018, 2018 1ST INTERNATIONAL CONFERENCE ON COMPUTER APPLICATIONS & INFORMATION SECURITY (ICCAIS' 2018)
[5]  
[Anonymous], 2017, Association for Computing Machinery, DOI DOI 10.1145/3184594
[6]  
[Anonymous], 2018, National Cyber Strategy of the United States of America
[7]  
[Anonymous], 1984, P AM STAT ASS BIOMEA
[8]  
Basili Victor, 2007, 2007 First International Symposium on Empirical Software Engineering and Measurement, P488
[9]  
Basili V. R., 1994, Encyclopedia of Software Engineering, V1, P528
[10]   A METHODOLOGY FOR COLLECTING VALID SOFTWARE ENGINEERING DATA [J].
BASILI, VR ;
WEISS, DM .
IEEE TRANSACTIONS ON SOFTWARE ENGINEERING, 1984, 10 (06) :728-738