Direkt zum Inhalt

Glas, Magdalena ; Vielberth, Manfred ; Pernul, Günther

Train as you Fight: Evaluating Authentic Cybersecurity Training in Cyber Ranges

Glas, Magdalena , Vielberth, Manfred und Pernul, Günther (2023) Train as you Fight: Evaluating Authentic Cybersecurity Training in Cyber Ranges. In: CHI '23: CHI Conference on Human Factors in Computing Systems, April 23 - 28, 2023, Hamburg Germany.

Veröffentlichungsdatum dieses Volltextes: 12 Jun 2023 07:59
Konferenz- oder Workshop-Beitrag


Zusammenfassung

Humans can play a decisive role in detecting and mitigating cyber attacks if they possess sufficient cybersecurity skills and knowledge. Realizing this potential requires effective cybersecurity training. Cyber range exercises (CRXs) represent a novel form of cybersecurity training in which trainees can experience realistic cyber attacks in authentic environments. Although evaluation is ...

Humans can play a decisive role in detecting and mitigating cyber attacks if they possess sufficient cybersecurity skills and knowledge. Realizing this potential requires effective cybersecurity training. Cyber range exercises (CRXs) represent a novel form of cybersecurity training in which trainees can experience realistic cyber attacks in authentic environments. Although evaluation is undeniably essential for any learning environment, it has been widely neglected in CRX research. Addressing this issue, we propose a taxonomy-based framework to facilitate a comprehensive and structured evaluation of CRXs. To demonstrate the applicability and potential of the framework, we instantiate it to evaluate Iceberg CRX, a training we recently developed to improve cybersecurity education at our university. For this matter, we conducted a user study with 50 students to identify both strengths and weaknesses of the CRX.



Beteiligte Einrichtungen


Details

DokumentenartKonferenz- oder Workshop-Beitrag (Nicht ausgewählt)
ISBN978-1-4503-9421-5
Buchtitel:Proceedings of the 2023 CHI Conference on Human Factors in Computing Systems (2023)
Verlag:Association for Computing Machinery
Ort der Veröffentlichung:New York, NY, USA
Seitenbereich:S. 1-19
DatumApril 2023
InstitutionenWirtschaftswissenschaften > Institut für Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Informatik und Data Science > Fachbereich Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Identifikationsnummer
WertTyp
10.1145/3544548.3581046DOI
Verwandte URLs
URLURL Typ
https://dl.acm.org/doi/abs/10.1145/3544548.3581046Nicht ausgewählt
Stichwörter / Keywordscyber range, evaluation method, cybersecurity exercise, cyber defense exercise
Dewey-Dezimal-Klassifikation000 Informatik, Informationswissenschaft, allgemeine Werke > 004 Informatik
StatusVeröffentlicht
BegutachtetJa, diese Version wurde begutachtet
An der Universität Regensburg entstandenJa
URN der UB Regensburgurn:nbn:de:bvb:355-epub-540292
Dokumenten-ID54029

Bibliographische Daten exportieren

Nur für Besitzer und Autoren: Kontrollseite des Eintrags

nach oben