出版社:International Association for Computer Information Systems
摘要:Financial institutions are increasingly finding difficulty defending against information security risks and threats, as they are often the number one target for information thieves. An effective information security training and awareness program can be a critical component of protecting an organization’s information assets. Financial institutions have invested significant resources in implementing information security training and awareness programs, but few have explored deeper to examine the effectiveness of these training programs. The purpose of this study was to examine the effectiveness of an information security training and awareness program within a mid- sized financial services institution. Effectiveness of information security training was determined by levels of knowledge transfer and knowledge retention. Additionally, the study was designed to determine whether the implementation of two different modes of training delivery, Instructor-based Training (IBT) and Computer-based Training (CBT) led to different results of effectiveness. The results indicate that instructor-based trainees had higher levels of knowledge transfer while the computer-based trainees had a higher level of knowledge retention within the 60-day time period. However, there was no statistically significant difference in 90-day knowledge retention rates within either IBT or CBT groups.