Questions

How do you get employee security training and especially buy-in?

Tags:
+
0 Votes
Locked

How do you get employee security training and especially buy-in?

bernalillo
What are good methods for training/educating user on basic security concepts and practices? Listening to that old IT guy drone on and on just ain't cutting it. I'm talking about the basics, for the average user who doesn't care or (worse) the average user that thinks he already knows it all.

For several reasons I have found the "beat them with threats of termination" course of action will not fly here (and generally just don't work). I need a really big carrot. I'm thinking that working on education and awareness would be my best approach but I'm having trouble getting through. What worked for you?

I am looking into a professional trainer for my department or maybe contract an outside firm to give a security presentation to my entire government staff but both are expensive and the later must be repeated periodically.

Do you know of any well done videos or other training materials and stratagies? Any help is appreciated.
  • +
    0 Votes
    robo_dev

    One firm I worked with did some lively 'quiz-show' style all-hands security training with prizes and all. People loved it and learned a lot. They used the GameBoard script to do a Jeopardy-style game...."I'll take Viruses and Spam for $100"

    Another firm did an online CBT with a quiz at the end. The users needed 80% to pass, and the results were stored in a database.

  • +
    0 Votes
    robo_dev

    One firm I worked with did some lively 'quiz-show' style all-hands security training with prizes and all. People loved it and learned a lot. They used the GameBoard script to do a Jeopardy-style game...."I'll take Viruses and Spam for $100"

    Another firm did an online CBT with a quiz at the end. The users needed 80% to pass, and the results were stored in a database.