Transformational Security Awareness: What Neuroscientists, Storytellers, and Marketers Can Teach Us About Driving Secure Behaviors
暫譯: 轉型安全意識:神經科學家、故事講述者與行銷專家教我們如何推動安全行為

Perry Carpenter

  • 出版商: Wiley
  • 出版日期: 2019-05-21
  • 售價: $1,300
  • 貴賓價: 9.5$1,235
  • 語言: 英文
  • 頁數: 368
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 1119566347
  • ISBN-13: 9781119566342
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

Expert guidance on the art and science of driving secure behaviors

Transformational Security Awareness empowers security leaders with the information and resources they need to assemble and deliver effective world-class security awareness programs that drive secure behaviors and culture change.

When all other processes, controls, and technologies fail, humans are your last line of defense. But, how can you prepare them? Frustrated with ineffective training paradigms, most security leaders know that there must be a better way. A way that engages users, shapes behaviors, and fosters an organizational culture that encourages and reinforces security-related values. The good news is that there is hope. That's what Transformational Security Awareness is all about.

Author Perry Carpenter weaves together insights and best practices from experts in communication, persuasion, psychology, behavioral economics, organizational culture management, employee engagement, and storytelling to create a multidisciplinary masterpiece that transcends traditional security education and sets you on the path to make a lasting impact in your organization.

  • Find out what you need to know about marketing, communication, behavior science, and culture management
  • Overcome the knowledge-intention-behavior gap
  • Optimize your program to work with the realities of human nature
  • Use simulations, games, surveys, and leverage new trends like escape rooms to teach security awareness
  • Put effective training together into a well-crafted campaign with ambassadors
  • Understand the keys to sustained success and ongoing culture change
  • Measure your success and establish continuous improvements

Do you care more about what your employees know or what they do? It's time to transform the way we think about security awareness. If your organization is stuck in a security awareness rut, using the same ineffective strategies, materials, and information that might check a compliance box but still leaves your organization wide open to phishing, social engineering, and security-related employee mistakes and oversights, then you NEED this book.

商品描述(中文翻譯)

專家指導安全行為的藝術與科學

《轉型安全意識》賦予安全領導者所需的信息和資源,以組建和提供有效的世界級安全意識計劃,推動安全行為和文化變革。

當所有其他流程、控制和技術失效時,人類是你最後的防線。但是,你該如何準備他們呢?對於無效的培訓模式感到沮喪的大多數安全領導者知道,必須有更好的方法。一種能夠吸引用戶、塑造行為並促進鼓勵和強化安全相關價值的組織文化的方法。好消息是,還有希望。《轉型安全意識》正是關於這一點。

作者佩里·卡彭特(Perry Carpenter)將來自溝通、說服、心理學、行為經濟學、組織文化管理、員工參與和故事講述等領域的專家見解和最佳實踐編織在一起,創造出一部跨越傳統安全教育的多學科傑作,讓你在組織中產生持久的影響。

- 瞭解有關行銷、溝通、行為科學和文化管理的必要知識
- 克服「知識-意圖-行為差距」
- 優化你的計劃以符合人性現實
- 使用模擬、遊戲、調查,並利用逃脫室等新趨勢來教授安全意識
- 將有效的培訓整合成一個精心設計的活動,並配備大使
- 理解持續成功和持續文化變革的關鍵
- 測量你的成功並建立持續改進

你更關心你的員工「知道」什麼,還是他們「做」了什麼?是時候改變我們對安全意識的思考方式。如果你的組織陷入安全意識的困境,使用相同的無效策略、材料和信息,這些可能只是為了符合合規要求,但仍然讓你的組織面臨釣魚攻擊、社交工程和安全相關的員工錯誤和疏忽,那麼你需要這本書。

作者簡介

Perry Carpenter is the Chief Evangelist and Strategy Office for KnowBe4, the world's most popular security awareness and simulated phishing platform (Inc 500 #96 and Cybersecurity Ventures 500 Cybersecurity #2). Perry works at KnowBe4 along with Chief Hacking Officer Kevin Mitnick. Previously Perry led security awareness, security culture management, and anti-phishing behavior management research at Gartner Research. He holds a MSIA for Norwich University and is a C-CISO. Perry regularly speaks at major cybersecurity conferences to management audiences including the Gartner Cyber Security Summit.

作者簡介(中文翻譯)

Perry Carpenter 是 KnowBe4 的首席宣傳官及策略辦公室負責人,KnowBe4 是全球最受歡迎的安全意識與模擬釣魚平台(Inc 500 第 96 名及 Cybersecurity Ventures 500 網路安全第 2 名)。Perry 與首席駭客官 Kevin Mitnick 一同在 KnowBe4 工作。之前,Perry 在 Gartner Research 領導安全意識、安全文化管理及反釣魚行為管理的研究。他擁有諾里奇大學的碩士學位(MSIA),並且是 C-CISO。Perry 定期在主要的網路安全會議上發表演講,對象包括管理層觀眾,如 Gartner 網路安全峰會。