Security Education, Training, Awareness (SETA)
- Games
- Tips
- Tools - mousepads
- Security Education, Training, and Awareness from a Human Performance Technology Point of View:

(made as available as 2007-91.pdf)
(Chapter 8 in Readings and Cases in the Management of Information Security, ISBN-13 9780619216276.)
Extract from the paper above (Table 3: Cause Analysis Results), as illustration of SETA and Human Performance Technology (HPT):
Tool/Resource Work Process Knowledge/Skill Level Performance Level COMGT Comments Passwords Creating strong passwords 57% report they know how to create strong passwords 8.1% report creating strong passwords Note the huge discrepancy! Important area to improve! Security settings Users change security settings to the highest level 48.2% report they know how to change security settings 34.6% report they change security settings to the highest level Not always easy to understand... Disabling or discarding cookies Users disable cookies or discard them when a website is closed 59.5% report they know how to disable cookies or set them to be discarded 44.2% disable cookies or set them to be discarded Privacy concern. Safe downloading Users do not download unknown files or program from the Internet 77% report they know how to determine if a file/program is safe to download. 66.1% choose not to download unknown files or programs Increasingly difficult to avoid, as also legitimate sites occasionally are infected with malware. Firewalls Installation and configuration 54.8% report they know how to install and configure a firewall 50.9% use a firewall Increasingly important, especially with broadband / always-on connections. Anti-virus software Installation, configuration, and updating 76% report they know how to install, configure, and update anti-virus software 73.1% use anti-virus software, 50.5% update anti- virus software once per week Must have installs on any Win PC. Patches and system updates Installation and testing 71% report they know how to apply and test system updates 65% apply and test system updated and patches Should always aim to patch any software as soon as available from manufacturer, best is to do using automatically schedule.
- Steps
- Performance Analysis (Need or opportunity)
- Organizational Analysis
- Environmental Analysis
- Desired Workforce Performance
- Actual State of Workforce Performance
- Gap Analysis
- Cause Analysis
- Lack of Environmental Support
- Lack of Repertory of Behavior
- Intervention Selection, Design, and Development
- Performance Support
- Job Analysis/work design
- Personal Development
- Human Resource development
- Organization communication
- Organization design and development
- Financial system
- Intervention Implementation, and Change
- Change management
- Process consulting
- Employee development
- Communication, networking and alliance building
- Evaluation
- Formative
- Summative
- Confirmative
- Meta Evaluation / Validation
- Performance Analysis (Need or opportunity)
Updated 2010-04-24
