Organizational security awareness programs may experience a number of challenges, including lack of resources, difficulty measuring the impact of the program, and perceptions among the workforce that training is a boring, check-the-box activity. While prior surveys and research have examined programs in the private sector, there is little understanding of whether these findings also apply within the U.S. government. To address this gap and better understand the needs, challenges, practices, and necessary competencies of federal security awareness teams and programs, NIST conducted a comprehensive, two-phase research study that leveraged both qualitative and quantitative methodologies. This companion document to NISTIR XXXX Federal Cybersecurity Awareness Programs: A Mixed Methods Research Study reports on a subset of study results focused on identifying the current approaches and challenges of security awareness programs within the federal government. Insights gained from these results are informing guidance and other initiatives to aid federal organizations in building effective security awareness programs. While focused on the U.S. government, findings may also have implications for organizational security awareness programs in other sectors.
Document Citations
Citations are generated automatically from bibliographic data
as a convenience and may not be complete or accurate.
Chicago
National Institute of Standards and Technology (NIST), Commerce Department. "Federal Cybersecurity Awareness Programs: A Mixed Methods Research Study". Government. Commerce Department, March 25, 2022. https://www.govinfo.gov/app/details/GOVPUB-C13-38e5130a7c16271a919c88119579bc91
APA
National Institute of Standards and Technology (NIST), Commerce Department. (2022, March 25). Federal Cybersecurity Awareness Programs: A Mixed Methods Research Study. [Government]. Commerce Department. https://www.govinfo.gov/app/details/GOVPUB-C13-38e5130a7c16271a919c88119579bc91
MLA
National Institute of Standards and Technology (NIST), Commerce Department. Federal Cybersecurity Awareness Programs: A Mixed Methods Research Study. Commerce Department, (25 Mar 2022), https://www.govinfo.gov/app/details/GOVPUB-C13-38e5130a7c16271a919c88119579bc91
Bluebook
National Institute of Standards and Technology (NIST), Commerce Department, Federal Cybersecurity Awareness Programs, GovInfo, (March 25, 2022), https://www.govinfo.gov/app/details/GOVPUB-C13-38e5130a7c16271a919c88119579bc91