Publication in conference proceedings Q2
Cybersecurity awareness platform with virtual coach and automated challenge assessment
Tiago Espinha Gasiba (Gasiba, T.); Ulrike Lechner (Lechner, U.); Maria Pinto-Albuquerque (Pinto-Albuquerque, M.); Anmoal Porwal (Porwal, A.);
Computer Security. Lecture Notes in Computer Science
Year (definitive publication)
2020
Language
English
Country
Switzerland
More Information
Web of Science®

This publication is not indexed in Web of Science®

Scopus

Times Cited: 6

(Last checked: 2024-07-17 06:26)

View record in Scopus


: 1.3
Google Scholar

Times Cited: 16

(Last checked: 2024-07-17 19:29)

View record in Google Scholar

Abstract
Over the last years, the number of cyber-attacks on industrial control systems has been steadily increasing. Among several factors, proper software development plays a vital role in keeping these systems secure. To achieve secure software, developers need to be aware of secure coding guidelines and secure coding best practices. This work presents a platform geared towards software developers in the industry that aims to increase awareness of secure software development. The authors also introduce an interactive game component, a virtual coach, which implements a simple artificial intelligence engine based on the laddering technique for interviews. Through a survey, a preliminary evaluation of the implemented artifact with real-world players (from academia and industry) shows a positive acceptance of the developed platform. Furthermore, the players agree that the platform is adequate for training their secure coding skills. The impact of our work is to introduce a new automatic challenge evaluation method together with a virtual coach to improve existing cybersecurity awareness training programs. These training workshops can be easily held remotely or off-line.
Acknowledgements
This work is financed by Portuguese national funds through FCT-Fundação para a Ciência e Tecnologia, I.P., under the project FCT UIDB/04466/2020. Furthermore, the third author thanks the Instituto Universitário de Lisboa and ISTAR-IUL, for their support.
Keywords
Cybersecurity,Awareness,Training,Artificial intelligence,Serious games,Secure coding,Static application,Security testing,Capture-the-flag
  • Computer and Information Sciences - Natural Sciences
  • Electrical Engineering, Electronic Engineering, Information Engineering - Engineering and Technology
Awards
Best paper award.
Funding Records
Funding Reference Funding Entity
UIDB/04466/2020 Fundação para a Ciência e a Tecnologia

With the objective to increase the research activity directed towards the achievement of the United Nations 2030 Sustainable Development Goals, the possibility of associating scientific publications with the Sustainable Development Goals is now available in Ciência-IUL. These are the Sustainable Development Goals identified by the author(s) for this publication. For more detailed information on the Sustainable Development Goals, click here.