Infosec glossary entry

ISA

ISA:
Interconnection Security Agreement
Information Security Awareness

A document that regulates security-relevant aspects of an intended connection between an agency and an external system. It regulates the security interface between any two systems operating under two different distinct authorities. https://csrc.nist.gov/glossary/term/interconnection_security_agreement


Information security awareness is defined as an employee’s general knowledge about information security and his cognizance of the information security policy (ISP) of his organization. General information security awareness and ISP awareness are the key dimensions of ISA. General information security awareness is defined as an employee’s overall knowledge and understanding of potential issues related to information security and their ramifications. Beyond general ISA, organizations have specific expectations of their employees that are reflected in the ISP. ISP awareness is defined as an employee’s knowledge and understanding of the requirements prescribed in the organization’s ISP and the aims of those requirements. Bulgurcu et al. 2010

By jean-christoph

May 22, 2023

security awareness

this might interest you as well

Boosting Cybersecurity in German SMEs with Gamification and Serious Play

TL;DR Gamified cybersecurity training offers an engaging and effective way to improve security awareness and practices within German SMEs. The ALARM Information Security project demonstrates the success of integrating gamification into training, enhancing retention and understanding of cybersecurity principles. By leveraging customized game scenarios, regular workshops, and participatory feedback loops, SMEs can bolster their cybersecurity

Read More

Unlock Effective Cybersecurity: Simplify Policies with the Clarity of the OSI Model

TL;DR Diving into the essence of effective cybersecurity, this article shines a light on the transformative power of simplifying policy language, inspired by the OSI model’s structured communication layers. It goes beyond theoretical insights, offering actionable strategies for CISOs to demystify complex jargon and make cybersecurity policies accessible and engaging for every team member. Highlighting

Read More

Leveraging Psychology in Cybersecurity: Strategies for SMEs

TL;DR This article delves into the intersection of psychology and cybersecurity, emphasizing the critical role of human elements in developing a resilient security culture within SMEs. Key points include the pivotal nature of psychological theories like Hofstede’s Cultural Dimensions and BJ Fogg’s Behavior-Knowledge Gap model in understanding and influencing organizational behavior towards cybersecurity. It highlights

Read More