2016
DOI: 10.14569/ijacsa.2016.070549
|View full text |Cite
|
Sign up to set email alerts
|

Awareness Training Transfer and Information Security Content Development for Healthcare Industry

Abstract: Abstract-Electronic Health Record (EHR) becomes increasingly pervasive and the need to safeguard EHR becomes more vital for healthcare organizations. Human error is known as the biggest threat to information security in Electronic Health Systems that can be minimized through awareness training programs. There are various techniques available for awareness of information security. However, research is scant regarding effective information security awareness delivery methods. It is essential that effective aware… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

0
10
0

Year Published

2020
2020
2024
2024

Publication Types

Select...
4
3
1

Relationship

0
8

Authors

Journals

citations
Cited by 16 publications
(10 citation statements)
references
References 13 publications
0
10
0
Order By: Relevance
“…Therefore, it is deduced that there is a high risk of security incidents triggered by non-ICT employees because the aforementioned threats and attacks and the associated impact of potential incidents have not been efficiently communicated to them by the ICT staff. All the above indicate that decreasing the end-point complexity as proposed in [ 32 ], along with training conduction, is essential in raising awareness amongst personnel and motivating them to pay attention to cyber-threats and policies to limit human errors [ 33 , 34 , 35 ]. The adoption of a risk-aware attitude and associated skills by the non-ICT staff through cybersecurity trainings and a robust organizational monitoring strategy could lead to a more GDPR-compliant status.…”
Section: Discussionmentioning
confidence: 99%
“…Therefore, it is deduced that there is a high risk of security incidents triggered by non-ICT employees because the aforementioned threats and attacks and the associated impact of potential incidents have not been efficiently communicated to them by the ICT staff. All the above indicate that decreasing the end-point complexity as proposed in [ 32 ], along with training conduction, is essential in raising awareness amongst personnel and motivating them to pay attention to cyber-threats and policies to limit human errors [ 33 , 34 , 35 ]. The adoption of a risk-aware attitude and associated skills by the non-ICT staff through cybersecurity trainings and a robust organizational monitoring strategy could lead to a more GDPR-compliant status.…”
Section: Discussionmentioning
confidence: 99%
“…These kinds of errors can be corrected through training programs with an intention to promote behaviors of individuals toward organizational policy. Training programs in organizations can help to improve employees' awareness toward the security of E-health systems and help them to adhere to appropriate behaviors that do not compromise the security of the system (Ghazvini and Shukur, 2016). Based on these facts, the information security awareness programs have positive influences on the employees' knowledge, attitude, and behavior in real life.…”
Section: Discussionmentioning
confidence: 99%
“…Organizations should make continual efforts to ensure that the content of policy is effectively communicated to the employees (Ghazvini and Shukur, 2016). Therefore, the factors that play a significant role in shaping perceived security should be enhanced (Peikari et.al, 2018).…”
Section: Introductionmentioning
confidence: 99%
See 1 more Smart Citation
“…Moreover, implementing user awareness campaigns, by educating and training end-users can help to improve the use of systems (Ghazvini & Shukur, 2016). However, as mentioned by Caldwell (2016), awareness without any other activity is not enough.…”
Section: Office 365 Sharepoint Onlinementioning
confidence: 99%