• DocumentCode
    900419
  • Title

    Strengthening the Weakest Link in Digital Protection

  • Author

    Suchan, William ; Sobiesk, Edward

  • Author_Institution
    Dept. of Electr. Eng. & Comput. Sci., US Mil. Acad., New York, NY
  • Volume
    4
  • Issue
    6
  • fYear
    2006
  • Firstpage
    78
  • Lastpage
    80
  • Abstract
    Although much has been written about digital protection technologies, the greatest vulnerability in any system is invariably the person behind the keyboard. In our one-semester course at the US Military Academy in New York, we educate roughly 800 undergraduates from nontechnical fields each year on intermediate-level IT skills. We place our students in an isolated virtual-computing environment, give them hands-on experience with a variety of attack vectors that hackers use to exploit vulnerabilities, and provide them with a multidimensional framework for understanding and mitigating risks. As a result of this educational experience, our students are better able to internalize the concepts we teach and end up with an increased realization of the actions required to protect crucial resources. To achieve our goal of reducing the potential vulnerabilities nontechnical users introduce, we´ve integrated three major components into our course: 1) a broad overview of key IT topics; 2) lessons directly targeting information assurance (IA); and 3) a recurring thread of ethical and security considerations that´s explicitly injected into lessons throughout the semester
  • Keywords
    computer science education; educational courses; ethical aspects; information technology; security of data; digital protection; hands-on experience; information assurance; intermediate-level IT skills; nontechnical fields; virtual-computing environment; vulnerability; Computer security; Data security; Databases; Information security; Keyboards; Military computing; Privacy; Protection; Reconnaissance; Web design; IT ethics; digital protection; information assurance;
  • fLanguage
    English
  • Journal_Title
    Security & Privacy, IEEE
  • Publisher
    ieee
  • ISSN
    1540-7993
  • Type

    jour

  • DOI
    10.1109/MSP.2006.166
  • Filename
    4042665