作者: Ronald C. Dodge , Curtis Carver , Aaron J. Ferguson
DOI: 10.1016/J.COSE.2006.10.009
关键词:
摘要: User security education and training is one of the most important aspects an organizations posture. Using exercises to reinforce this aspect frequently done by industry alike; however these usually enlist willing participants. We have taken concept using exercise modified it in application evaluate a users propensity respond email phishing attacks unannounced test. This paper describes considerations establishing process used create implement evaluation our user information assurance program. The takes form exercise, where we send out styled record responses.