Cyber security initiatives provide immense opportunities for governments to educate, train, create awareness, and promote cyber hygiene among businesses and the general public. Creating and promoting these initiatives are necessary steps governments take to ensure the cyber health of a nation. To ensure users are safe and confident, especially online, the UK government has created initiatives designed to meet the needs of various users such as small charity guide for charity organisations, small business guide for small businesses, get safe online for the general public, and cyber essentials for organisations, among many others. However, ensuring that these initiatives deliver on their objectives can be daunting, especially when reaching out to the whole population. It is, therefore, vital for the government to intensify practical ways of reaching out to users to make sure that they are aware of their obligation to cyber security. This study evaluates sixteen of the UK government's cyber security initiatives and discovers four notable reasons why these initiatives are failing. These reasons are insufficient awareness and training, non-evaluation of initiatives to measure impact, insufficient behavioural change, and limited coverage to reach intended targets. The recommendation based on these findings is to promote these initiatives both nationally and at community levels.
翻译:网络安全倡议为政府提供了巨大机遇,用于教育、培训、提高意识并促进企业及公众的网络安全卫生。创建和推广这些倡议是政府为确保国家网络安全所采取的必要步骤。为确保用户的安全与信心,特别是在线环境下,英国政府制定了旨在满足各类用户需求的倡议,例如面向慈善组织的小型慈善指南、面向中小企业的小型企业指南、面向公众的安全上网指南,以及面向组织的网络基本标准等。然而,确保这些倡议实现其目标可能面临挑战,特别是在覆盖全体人群时。因此,政府亟需加强以实际方式接触用户,确保他们知晓自身的网络安全义务。本研究评估了英国政府的十六项网络安全倡议,并发现了这些倡议未能达成目标的四个显著原因:意识与培训不足、未通过评估衡量其影响、行为改变不足,以及覆盖范围有限而未能触及目标群体。基于这些发现,建议在全国及社区层面推广这些倡议。