When discussing cybersecurity, it is often technology that takes the spotlight. Nonetheless, the most effective preventative measures hinge on educating individuals in the use of technology. The initial step for organizations is to provide training to their employees. However, it is imperative for the industry to broaden the definition of a cybersecurity culture from being solely an organization’s obligation to a global viewpoint.
If every individual, whether for work, personal, or education purposes, sees cybersecurity as their own duty, it becomes a formidable challenge for cybercriminals to execute successful attacks. Achieving this objective begins with taking steps to mitigate personal risks by securing devices and data. Moreover, each person should be vigilant in identifying and reporting any potential cyber threats they encounter.
The establishment of a global ethos of cybersecurity can only transpire when corporations, non-profits, and universities collaborate to propagate this mindset and integrate it into their core mission. Below are four strategies to integrate cybersecurity into society to aid in cultivating a global culture of cybersecurity:
1. Commence a mentoring program
An essential aspect of fostering a global cybersecurity culture is ensuring a continuous influx of diverse and skilled professionals into the industry. Due to cybersecurity offering unconventional career paths, including badges and certifications, aspiring professionals often struggle to determine the optimal route. By offering support to these individuals interested in joining the cybersecurity domain, current cybersecurity professionals can help eliminate barriers to entry.
For instance, the non-profit organization Women in Cybersecurity provides a structured nine-month mentorship initiative aimed at assisting members in enhancing their expertise in various areas such as influence, negotiation, leadership, work-life balance, and communication. In 2021, the program paired 1,115 mentees from entry-level to senior positions with experienced mentors to guide them in their journey.
Organizations embarking on mentorship programs should initially identify their target audience, be it underserved communities, university students, or novice professionals. Subsequently, outlining the program framework, which includes developing a mentor curriculum, devising mentor recruitment strategies, and pairing mentors with mentees. After the program’s launch, continuous monitoring and incorporating feedback from participants are crucial for program enhancement.
Enhance your cybersecurity skills
2. Concentrate on the upcoming generation
Engaging with students, especially those in high school and middle school, is an effective method to nurture the professional pipeline by targeting youth making long-term career decisions. Additionally, individuals from this demographic are heavy technology users and can disseminate the knowledge acquired to their family and peers. Iowa State University’s Center for Cybersecurity Innovation & Outreach (CyIO) offers multiple programs tailored for high school students. Since 2007, CyIO has sponsored Innovate-IT clubs in Iowa high schools, focusing on game design or cyber defense. Furthermore, the Iowa Cyber Hub hosts the annual Youth Cyber Summit each October, offering activities like a Capture the Flag challenge, interactive security demonstrations, discussions on career paths, and panels on cybersecurity professions.
Organizations interested in nurturing the next generation should define their core message and objectives, such as educating and inspiring youngsters to pursue careers in cybersecurity. Next, strategize on how to effectively convey the message to the target audience, through clubs or events. Collaborating with schools or youth-focused non-profits to create programs and promote the initiatives is key.
3. Infuse humor and excitement
Instead of traditional lectures and dry information sharing, explore entertaining approaches to impart your message to the community. The blend of humor with educational content not only captures attention but also aids in information retention. Start with defining the key message and pinpointing the specific target audience. Proceed by brainstorming ideas that align with your audience’s preferences to effectively communicate the message while captivating their interest. Test your concepts with individuals from your target demographic before implementation to ensure resonance.
Utilizing videos is a compelling method to convey messages in a light-hearted manner. For Cybersecurity Month, Iowa State University produced a catchy video named Cyber House Rock!, promoting data encryption, robust passwords, and protection against malware, spam, and email scams. BuzzFeed’s Internet Privacy Prank video, adopting a “show, don’t tell” approach, illustrates the ease with which cybercriminals can access personal information.
Incorporating humor and entertainment into events is another effective strategy. Princeton’s cybersecurity team embraced an 80s-themed dress-up night for the “War Games” showing, followed by discussions on the evolving landscape of information security since the movie’s debut in 1983. At different events, the team injected fun by introducing a Wheel of Fortune, allowing attendees to win prizes while learning about cybersecurity.
4. Establish an ambassador program to assist friends and family
While mentoring focuses on current and future professionals, filling a significant educational gap, the Cybersecurity Ambassador Program from Iowa State extends support to a broader audience. Offered through the Iowa Cyber Hub, the program enables Iowans to educate businesses, communities, schools, friends, and families. These ambassadors equip individuals with the knowledge and tools to navigate the internet securely, mitigate scams, bullying, and privacy violations.
By prioritizing support for residents, students, and businesses, organizations can leverage such initiatives to provide oft-overlooked education. Launching an ambassador program mirrors the process of initiating a mentorship program but necessitates tailored outreach to those most in need, such as seniors, teenagers, and vulnerable groups. Ambassador programs can also host community events focusing on specific topics like enhancing data privacy and handling ransomware attacks.
While it may be convenient for organizations to concentrate solely on fortifying their defenses, the online realm becomes more secure when everyone holds informed and involved perspectives on cybersecurity. By actively striving for this ethos, organizations, non-profits, and universities collectively contribute to creating a safer internet environment for everyone.