TY - GEN
T1 - Eating the elephant
T2 - 14th International Conference on Cyber Warfare and Security, ICCWS 2019
AU - Sithole, Thenjiwe
AU - Duvenage, Petrus
AU - Jaquire, Victor
AU - Von Solms, Sebastian
N1 - Publisher Copyright:
© 2019 14th International Conference on Cyber Warfare and Security, ICCWS 2019. All rights reserved.
PY - 2019
Y1 - 2019
N2 - It is widely acknowledged that conventional cyber security solutions alone are wholly insufficient in the face of threats posed by role players such as nation states, criminal syndicates, corporate spies, terrorists, hacktivists and rogue individuals. The securing of cyber space depends not only on raising the bar in respect of defensive measures, but also needs to involve proactive action focussing on threat agents. For organisations with sizable assets, cyber counterintelligence (CCI) offers a practicable approach which combines both the defensive and offensive dimensions. CCI's effective implementation and execution above all requires a coherent organisational awareness and training programme (ATP). For larger organisations, A cyber counterintelligence awareness and training programme (CCI ATP) programme has to be multi-tiered and will typically range from the elementary (e.g. basic cybersecurity awareness and skills training for all personnel) to the advanced (e.g. courses for CCI specialists on the cyber frontlines). The design of such a multi-tiered programme is self-evidently a daunting task and published academic research on this topic is very limited. This proverbial elephant thus needs to be eaten one bite at a time. This paper advances three such first 'bites', namely (i) the conceptualisation and contextualisation of a CCI ATP; (ii) a proposition on the structuring of the CCI ATP's design and implementation process; and (iii) a high-level structuring of a multi-tiered CCI ATP. The multi-tiered CCI ATP we advance in this paper consists of four tiers which are explicated with reference to inter alia target group, training objectives and training content. The paper concludes with observations on the CCI ATP research conducted thus far.
AB - It is widely acknowledged that conventional cyber security solutions alone are wholly insufficient in the face of threats posed by role players such as nation states, criminal syndicates, corporate spies, terrorists, hacktivists and rogue individuals. The securing of cyber space depends not only on raising the bar in respect of defensive measures, but also needs to involve proactive action focussing on threat agents. For organisations with sizable assets, cyber counterintelligence (CCI) offers a practicable approach which combines both the defensive and offensive dimensions. CCI's effective implementation and execution above all requires a coherent organisational awareness and training programme (ATP). For larger organisations, A cyber counterintelligence awareness and training programme (CCI ATP) programme has to be multi-tiered and will typically range from the elementary (e.g. basic cybersecurity awareness and skills training for all personnel) to the advanced (e.g. courses for CCI specialists on the cyber frontlines). The design of such a multi-tiered programme is self-evidently a daunting task and published academic research on this topic is very limited. This proverbial elephant thus needs to be eaten one bite at a time. This paper advances three such first 'bites', namely (i) the conceptualisation and contextualisation of a CCI ATP; (ii) a proposition on the structuring of the CCI ATP's design and implementation process; and (iii) a high-level structuring of a multi-tiered CCI ATP. The multi-tiered CCI ATP we advance in this paper consists of four tiers which are explicated with reference to inter alia target group, training objectives and training content. The paper concludes with observations on the CCI ATP research conducted thus far.
KW - Cyber counterintelligence
KW - Cyber security
KW - Offensive cybersecurity
KW - Threat intelligence
KW - Training
UR - http://www.scopus.com/inward/record.url?scp=85066049538&partnerID=8YFLogxK
M3 - Conference contribution
AN - SCOPUS:85066049538
T3 - 14th International Conference on Cyber Warfare and Security, ICCWS 2019
SP - 396
EP - 404
BT - 14th International Conference on Cyber Warfare and Security, ICCWS 2019
A2 - Leenen, Louise
A2 - van der Waag-Cowling, Noelle
A2 - van der Waag-Cowling, Noelle
PB - Academic Conferences and Publishing International Limited
Y2 - 28 February 2019 through 1 March 2019
ER -