Systematically Improving Cybersecurity Training

Systematically Improving Cybersecurity Training

Notes:
  • Julia Prümmer describes her transition from legal psychology into cybersecurity research and how psychological methods shape her approach to cybersecurity training.
  • The discussion explores the role of systematic reviews in mapping what a research field actually knows, rather than relying on highly visible or frequently cited studies.
  • Findings from a large-scale systematic review of cybersecurity training methods are discussed, highlighting the diversity of training approaches used across the literature.
  • The episode examines results from a meta-analysis assessing the overall effectiveness of cybersecurity training and the gap between improvements in precursors such as knowledge and intentions versus observable behaviour.
  • Julia explains why many cybersecurity training programmes lack explicit behavioural theory and rely on trial-and-error design choices.
  • A key theme is the distinction between cybersecurity behaviours that require active engagement, such as phishing detection, and behaviours that may benefit from habit formation, such as screen locking or password management.
  • The conversation draws on research into email habits and phishing susceptibility to illustrate how habitual behaviour can increase vulnerability in certain contexts.
  • Julia discusses the use of psychological theory, including habit formation and implementation intentions, to design and evaluate cybersecurity training interventions.
  • The episode concludes with reflections on the future of cybersecurity training research and the need for behaviour-specific, theory-informed models.
About our Guest:

Julia Prümmer

https://www.universiteitleiden.nl/medewerkers/julia-prummer#tab-1

https://www.linkedin.com/in/julia-prümmer-376778159/

Papers or resources mentioned in this episode

Prümmer, J., van Steen, T., & van den Berg, B. (2024). A systematic review of current cybersecurity training methods. Computers & Security, 136, 103585.

https://doi.org/10.1016/j.cose.2023.103585

Prümmer, J. (2024). The role of cognition in developing successful cybersecurity training programs: Passive vs. active engagement. In D. D. Schmorrow & C. M. Fidopiastis (Eds.), Augmented cognition. HCII 2024 (Lecture Notes in Computer Science, Vol. 14695, pp. 185–199). Springer.

https://scholarlypublications.universiteitleiden.nl/handle/1887/4093101

Prümmer, J., van Steen, T., & van den Berg, B. (2025). Assessing the effect of cybersecurity training on end-users: A meta-analysis. Computers & Security, 150, 104206.

https://doi.org/10.1016/j.cose.2024.104206

Vishwanath, A. (2015). Examining the distinct antecedents of e-mail habits and its influence on the outcomes of a phishing attack. Journal of Computer-Mediated Communication, 20(5), 570–584.

https://doi.org/10.1111/jcc4.12126

Other

If this topic of training as an intervention to reduce susceptibility to cybercrime, you might also enjoy the recent Episodes 123, 116, 110, 106, 60, and 59 that are all on related topics. If you are brave you can even go right back to Episodes 6, 7 and 8, there is a lot to listen to.

Jaksot(127)

Caught in the Web: Virtual Kidnapping and Digital Scams

Caught in the Web: Virtual Kidnapping and Digital Scams

Notes:Dr Chang's background in law and sociology led him to specialize in criminology, particularly cybercrime, after observing its emerging relevance.He chose to pursue his PhD in Australia due to sc...

1 Maalis 202424min

Automating CSAM Investigation: Research to Practice

Automating CSAM Investigation: Research to Practice

Notes:The software developed by Bryce Westlake, Russell Brewer and colleagues aims to assist law enforcement agencies in identifying perpetrators of child sexual abuse material (CSAM) offences by usin...

1 Helmi 202435min

Twenty24: Top Tips & Tricks for Better Presentations

Twenty24: Top Tips & Tricks for Better Presentations

About our guests:Russell Brewerhttps://researchers.adelaide.edu.au/profile/russell.brewerLennon Changhttps://www.deakin.edu.au/about-deakin/people/lennon-changBenoit Duponthttps://www.benoitdupont.net...

1 Tammi 202432min

1 Hundred: An AI assisted analysis of Cybercrimeology

1 Hundred: An AI assisted analysis of Cybercrimeology

Summary:The main points of this episode are:Celebrating the 100th episode of cybercrimeology and reflecting on the podcast's journey over the past three years.Discussing the use of new technologies, s...

15 Joulu 202327min

Hack Righter: Working together to make good things better

Hack Righter: Working together to make good things better

Notes:- Rutger Leukfeldt discusses his background and how he became involved in cybersecurity research. - The importance of cybersecurity education and the new cybersecurity bachelor program at Leiden...

1 Joulu 202330min

The Ecosystem: Understanding Cybercrime and Cybersecurity

The Ecosystem: Understanding Cybercrime and Cybersecurity

Notes:- Dr. Benoît Dupont has written a book on the ecology of cybercrime, which was born from his frustration with the segmentation of research on cybercrime within criminology and between discipline...

15 Marras 202324min

Minority Reporting: Beyond WEIRD(E) Cybercrime

Minority Reporting: Beyond WEIRD(E) Cybercrime

Notes:Dr. Kemp initially moved to Spain and worked as an English teacher before deciding to go back to university to study a social science. He ended up choosing criminology due to the available class...

1 Marras 202321min

Cybercrime Awareness Theatre: The revolutionary promise of story sharing

Cybercrime Awareness Theatre: The revolutionary promise of story sharing

About our guests:Dr. Katalin Partihttps://liberalarts.vt.edu/departments-and-schools/department-of-sociology/faculty/katalin-parti.htmlhttps://www.linkedin.com/in/partikat Papers or resources mentione...

15 Loka 202327min

Suosittua kategoriassa Koulutus

rss-murhan-anatomia
voi-hyvin-meditaatiot-2
rss-narsisti
psykopodiaa-podcast
adhd-podi
rahapuhetta
rss-uskonto-on-tylsaa
rss-liian-kuuma-peruna
rss-rahamania
kesken
rss-vapaudu-voimaasi
rss-niinku-asia-on
salainen-paivakirja
rss-duodecim-lehti
rss-tietoinen-yhteys-podcast-2
rss-koira-haudattuna
aloita-meditaatio
mielipaivakirja
esa-saarinen-filosofia-ja-systeemiajattelu
filocast-filosofian-perusteet