Analysis of cyber security knowledge gaps based on cyber security body of knowledge

dc.authoridDonmez, Emrah/0000-0003-3345-8344
dc.contributor.authorCatal, Cagatay
dc.contributor.authorOzcan, Alper
dc.contributor.authorDonmez, Emrah
dc.contributor.authorKasif, Ahmet
dc.date.accessioned2025-07-03T21:26:52Z
dc.date.issued2023
dc.departmentBalıkesir Üniversitesi
dc.description.abstractDue to the increasing number of cyber incidents and overwhelming skills shortage, it is required to evaluate the knowledge gap between cyber security education and industrial needs. As such, the objective of this study is to identify the knowledge gaps in cyber security graduates who join the cyber security workforce. We designed and performed an opinion survey by using the Cyber Security Knowledge Areas (KAs) specified in the Cyber Security Body of Knowledge (CyBOK) that comprises 19 KAs. Our data was gathered from practitioners who work in cyber security organizations. The knowledge gap was measured and evaluated by acknowledging the assumption for employing sequent data as nominal data and improved it by deploying chi-squared test. Analyses demonstrate that there is a gap that can be utilized to enhance the quality of education. According to acquired final results, three key KAs with the highest knowledge gap are Web and Mobile Security, Security Operations and Incident Management. Also, Cyber-Physical Systems (CPS), Software Lifecycles, and Vulnerabilities are the knowledge areas with largest difference in perception of importance between less and more experienced personnel. We discuss several suggestions to improve the cyber security curriculum in order to minimize the knowledge gaps. There is an expanding demand for executive cyber security personnel in industry. High-quality university education is required to improve the qualification of upcoming workforce. The capability and capacity of the national cyber security workforce is crucial for nations and security organizations. A wide range of skills, namely technical skills, implementation skills, management skills, and soft skills are required in new cyber security graduates. The use of each CyBOK KA in the industry was measured in response to the extent of learning in university environments. This is the first study conducted in this field, it is considered that this research can inspire the way for further researches.
dc.identifier.doi10.1007/s10639-022-11261-8
dc.identifier.endpage1831
dc.identifier.issn1360-2357
dc.identifier.issn1573-7608
dc.identifier.issue2
dc.identifier.pmid35967829
dc.identifier.scopusqualityQ1
dc.identifier.startpage1809
dc.identifier.urihttps://doi.org/10.1007/s10639-022-11261-8
dc.identifier.urihttps://hdl.handle.net/20.500.12462/21914
dc.identifier.volume28
dc.identifier.wosWOS:000836068500001
dc.identifier.wosqualityQ1
dc.indekslendigikaynakWeb of Science
dc.indekslendigikaynakPubMed
dc.language.isoen
dc.publisherSpringer
dc.relation.ispartofEducation and Information Technologies
dc.relation.publicationcategoryMakale - Uluslararası Hakemli Dergi - Kurum Öğretim Elemanı
dc.rightsinfo:eu-repo/semantics/openAccess
dc.snmzKA_WOS_20250703
dc.subjectCyber security
dc.subjectCyber security body of knowledge
dc.subjectData analysis
dc.subjectData mining
dc.subjecteducation
dc.subjectKnowledge gaps
dc.subjectSkill gaps
dc.subjectSurvey
dc.titleAnalysis of cyber security knowledge gaps based on cyber security body of knowledge
dc.typeArticle

Dosyalar