Cybersecurity education and training in hospitals: Proactive resilience educational framework (Prosilience EF)
Title | Cybersecurity education and training in hospitals: Proactive resilience educational framework (Prosilience EF) |
Publication Type | Conference Paper |
Year of Publication | 2018 |
Authors | Rajamäki, J., Nevmerzhitskaya, J., Virág, C. |
Conference Name | 2018 IEEE Global Engineering Education Conference (EDUCON) |
Date Published | April 2018 |
Publisher | IEEE |
Keywords | computer security, critical infrastructures, cyber physical systems, cyber resilience level measuring, cyber-attacks, cybersecurity, cybersecurity education, cybersecurity threats, cybersecurity training, cybersecurity training providers, data protection procedures, educational training schemes, eHealth, Electronic healthcare, Health Care, healthcare settings, holistic cyber resilience, hospitals, Human Errors, information security processes, information technology, multilateral educational training scheme, privacy, proactive resilience educational framework, Prosilience EF, pubcrawl, resilience, security framework, security of data, Training, training development |
Abstract | Healthcare is a vital component of every nation's critical infrastructure, yet it is one of the most vulnerable sector for cyber-attacks. To enforce the knowledge on information security processes and data protection procedures, educational and training schemes should be establishedfor information technology (IT) staff working in healthcare settings. However, only training IT staff is not enough, as many of cybersecurity threats are caused by human errors or lack of awareness. Current awareness and training schemes are often implemented in silos, concentrating on one aspect of cybersecurity at a time. Proactive Resilience Educational Framework (Prosilience EF) provides a holistic cyber resilience and security framework for developing and delivering a multilateral educational and training scheme based on a proactive approach to cybersecurity. The framework is built on the principle that education and training must be interactive, guided, meaningful and directly relevant to the user' operational environment. The framework addresses capacity mapping, cyber resilience level measuring, utilizing available and mapping missing resources, adaptive learning technologies and dynamic content delivery. Prosilience EF launches an iterative process of awareness and training development with relevant stakeholders (end users - hospitals, healthcare authorities, cybersecurity training providers, industry members), evaluating the framework via joint exercises/workshops andfurther developing the framework. |
URL | https://ieeexplore.ieee.org/document/8363488 |
DOI | 10.1109/EDUCON.2018.8363488 |
Citation Key | rajamaki_cybersecurity_2018 |
- healthcare settings
- training development
- Training
- security of data
- security framework
- resilience
- pubcrawl
- Prosilience EF
- proactive resilience educational framework
- privacy
- multilateral educational training scheme
- information technology
- information security processes
- Human Errors
- hospitals
- holistic cyber resilience
- computer security
- health care
- Electronic healthcare
- eHealth
- educational training schemes
- data protection procedures
- cybersecurity training providers
- cybersecurity training
- cybersecurity threats
- cybersecurity education
- Cybersecurity
- cyber-attacks
- cyber resilience level measuring
- cyber physical systems
- critical infrastructures