{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,29]],"date-time":"2026-05-29T17:49:41Z","timestamp":1780076981374,"version":"3.54.0"},"reference-count":72,"publisher":"MDPI AG","issue":"3","license":[{"start":{"date-parts":[[2022,6,28]],"date-time":"2022-06-28T00:00:00Z","timestamp":1656374400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["JCP"],"abstract":"<jats:p>The emergence of the COVID-19 pandemic in early 2020 has transformed how individuals work and learn and how they can apply cyber-security requirements in their, mostly remote, environments. This transformation also affected the university student population; some needed to adjust to new remote work settings, and all needed to adjust to the new remote study environment. In this online research study, we surveyed a large number of university students (n = 798) to understand their expectations in terms of support and help for this new remote work and study environment. We also asked students to report on their practices regarding remote location and Wi-Fi security settings, smart home device usage, BYOD (bring your own device) and personal device usage and social engineering threats, which can all lead to compromised security. A key aspect of our work is a comparison between the practices of students having work experience with the practices of students having no such additional experience. We identified that both the expectations and the level of cyber-security awareness differ significantly between the two student populations and that cyber-security awareness is increased by work experience. Work experience students are more aware of the cyber-security risks associated with a remote environment, and a higher portion of them know the dedicated employee whom they can contact in the event of incidents. We present the organizational security practices through the lens of employees with initial work experience, contributing to a topic that has so far received only limited attention from researchers. We provide recommendations for remote study settings and also for remote work environments, especially where the existing research literature survey results differ from the findings of our survey.<\/jats:p>","DOI":"10.3390\/jcp2030025","type":"journal-article","created":{"date-parts":[[2022,6,29]],"date-time":"2022-06-29T01:48:38Z","timestamp":1656467318000},"page":"490-515","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":19,"title":["Work Experience as a Factor in Cyber-Security Risk Awareness: A Survey Study with University Students"],"prefix":"10.3390","volume":"2","author":[{"given":"Tibor","family":"P\u00f3sa","sequence":"first","affiliation":[{"name":"Department of Informatics, Technical University of Munich, 85748 Garching, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1093-1282","authenticated-orcid":false,"given":"Jens","family":"Grossklags","sequence":"additional","affiliation":[{"name":"Department of Informatics, Technical University of Munich, 85748 Garching, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"1968","published-online":{"date-parts":[[2022,6,28]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"182","DOI":"10.1145\/358061.358068","article-title":"Remote office work: Changing work patterns in space and time","volume":"26","author":"Olson","year":"1983","journal-title":"Commun. ACM"},{"key":"ref_2","doi-asserted-by":"crossref","first-page":"213","DOI":"10.1023\/B:PNET.0000026887.35638.ce","article-title":"An overview of virtual private network (VPN): IP VPN and optical VPN","volume":"7","author":"Zhang","year":"2004","journal-title":"Photonic Netw. Commun."},{"key":"ref_3","doi-asserted-by":"crossref","first-page":"9","DOI":"10.24018\/ejbmr.2022.7.1.1170","article-title":"The black swan of the coronavirus and how American organizations have adapted to the new world of remote work","volume":"7","author":"Wyld","year":"2022","journal-title":"Eur. J. Bus. Manag. Res."},{"key":"ref_4","unstructured":"Child, F., Frank, M., Lef, M., and Sarakatsannis, J. (2021). Setting a New Bar for Online Higher Education, McKinsey and Company. Available online: https:\/\/www.mckinsey.com\/industries\/education\/our-insights\/setting-a-new-bar-for-online-higher-education."},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Barrero, J.M., Bloom, N., and Davis, S.J. (2021). Let Me Work from Home, or I Will Find Another Job, Becker Friedman Institute for Economics, University of Chicago. Working Paper 2021-87.","DOI":"10.2139\/ssrn.3890988"},{"key":"ref_6","unstructured":"Schiffer, Z. (2022, May 31). The Verge Technology News Website: Apple Employees Push Back against Returning to the Office in Internal Letter. Available online: https:\/\/www.theverge.com\/2021\/6\/4\/22491629\/apple-employees-push-back-return-office-internal-letter-tim-cook."},{"key":"ref_7","unstructured":"Ahmad, T. (2022, May 31). Corona Virus (COVID-19) Pandemic and Work from Home: Challenges of Cybercrimes and Cybersecurity. SSRN Working Paper SSRN 3568830. Available online: https:\/\/papers.ssrn.com\/sol3\/papers.cfm?abstract_id=3568830."},{"key":"ref_8","first-page":"1","article-title":"Working from home during COVID-19 crisis: A cyber security culture assessment survey","volume":"35","author":"Georgiadou","year":"2021","journal-title":"Secur. J."},{"key":"ref_9","doi-asserted-by":"crossref","unstructured":"Andrade, R.O., Garc\u00e9s, I.O., and Cazares, M. (2020, January 27\u201328). Cybersecurity attacks on Smart Home during Covid-19 pandemic. Proceedings of the 2020 Fourth World Conference on Smart Trends in Systems, Security and Sustainability (WorldS4), London, UK.","DOI":"10.1109\/WorldS450073.2020.9210363"},{"key":"ref_10","first-page":"1","article-title":"Social engineering attacks during the COVID-19 pandemic","volume":"2","author":"Venkatesha","year":"2021","journal-title":"SN Comput. Sci."},{"key":"ref_11","doi-asserted-by":"crossref","first-page":"1","DOI":"10.4102\/sajim.v23i1.1277","article-title":"Cyberattacks and threats during COVID-19: A systematic literature review","volume":"23","author":"Chigada","year":"2021","journal-title":"S. Afr. J. Inf. Manag."},{"key":"ref_12","doi-asserted-by":"crossref","first-page":"212","DOI":"10.1002\/hbe2.201","article-title":"COVID-19 as an accelerator for digitalization at a German university: Establishing hybrid campuses in times of crisis","volume":"2","author":"Skulmowski","year":"2020","journal-title":"Hum. Behav. Emerg. Technol."},{"key":"ref_13","doi-asserted-by":"crossref","first-page":"1049","DOI":"10.1108\/MRR-04-2013-0085","article-title":"Information security awareness and behavior: A theory-based literature review","volume":"37","author":"Lebek","year":"2014","journal-title":"Manag. Res. Rev."},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"102267","DOI":"10.1016\/j.cose.2021.102267","article-title":"Enhancing employees information security awareness in private and public organisations: A systematic literature review","volume":"106","author":"Khando","year":"2021","journal-title":"Comput. Secur."},{"key":"ref_15","doi-asserted-by":"crossref","unstructured":"Farooq, A., Isoaho, J., Virtanen, S., and Isoaho, J. (2015, January 20\u201322). Information security awareness in educational institution: An analysis of students\u2019 individual factors. Proceedings of the 2015 IEEE International Conference on Trust, Security and Privacy in Computing and Communications (TrustCom), Helsinki, Finland.","DOI":"10.1109\/Trustcom.2015.394"},{"key":"ref_16","doi-asserted-by":"crossref","first-page":"115","DOI":"10.1108\/IMCS-01-2013-0005","article-title":"Recommendations for information security awareness training for college students","volume":"22","author":"Kim","year":"2014","journal-title":"Inf. Manag. Comput. Secur."},{"key":"ref_17","doi-asserted-by":"crossref","first-page":"924","DOI":"10.1055\/s-0041-1735527","article-title":"Information security awareness and behaviors of health care professionals at public health care facilities","volume":"12","author":"Alhuwail","year":"2021","journal-title":"Appl. Clin. Inform."},{"key":"ref_18","first-page":"56","article-title":"Factors that affect the success of security education, training, and awareness programs: A literature review","volume":"19","author":"Kirova","year":"2018","journal-title":"J. Inf. Technol. Theory Appl."},{"key":"ref_19","doi-asserted-by":"crossref","first-page":"1827","DOI":"10.1007\/s10586-019-03034-9","article-title":"AVARCIBER: A framework for assessing cybersecurity risks","volume":"23","author":"Mejia","year":"2020","journal-title":"Clust. Comput."},{"key":"ref_20","doi-asserted-by":"crossref","unstructured":"Skopik, F., Wurzenberger, M., Settanni, G., and Fiedler, R. (2015, January 8\u20139). Establishing national cyber situational awareness through incident information clustering. Proceedings of the International Conference on Cyber Situational Awareness, Data Analytics and Assessment (CyberSA), London, UK.","DOI":"10.1109\/CyberSA.2015.7166126"},{"key":"ref_21","unstructured":"Cebula, J.L., and Young, L.R. (2010). A Taxonomy of Operational Cyber Security Risks, Carnegie-Mellon Univ, Software Engineering Institute. Available online: https:\/\/apps.dtic.mil\/sti\/citations\/ADA537111."},{"key":"ref_22","doi-asserted-by":"crossref","unstructured":"Krumay, B., Bernroider, E., and Walser, R. (2018). Evaluation of cybersecurity management controls and metrics of critical infrastructures: A literature review considering the NIST Cybersecurity Framework. Nordic Conference on Secure IT Systems, Springer.","DOI":"10.1007\/978-3-030-03638-6_23"},{"key":"ref_23","doi-asserted-by":"crossref","first-page":"44","DOI":"10.1145\/3130515.3130519","article-title":"From information security awareness to reasoned compliant action: Analyzing information security policy compliance in a large banking organization","volume":"48","author":"Bauer","year":"2017","journal-title":"ACM SIGMIS Database Database Adv. Inf. Syst."},{"key":"ref_24","doi-asserted-by":"crossref","unstructured":"Bidgoli, M., and Grossklags, J. (2016, January 12\u201314). End user cybercrime reporting: What we know and what we can do to improve it. Proceedings of the 2016 IEEE International Conference on Cybercrime and Computer Forensic (ICCCF), Vancouver, BC, Canada.","DOI":"10.1109\/ICCCF.2016.7740424"},{"key":"ref_25","doi-asserted-by":"crossref","first-page":"474","DOI":"10.1108\/JRF-09-2016-0122","article-title":"What do we know about cyber risk and cyber risk insurance?","volume":"17","author":"Eling","year":"2016","journal-title":"J. Risk Financ."},{"key":"ref_26","doi-asserted-by":"crossref","unstructured":"Laszka, A., Farhang, S., and Grossklags, J. (2017). On the economics of ransomware. International Conference on Decision and Game Theory for Security, Springer.","DOI":"10.1007\/978-3-319-68711-7_21"},{"key":"ref_27","unstructured":"United States Government Accountability Office (2022, February 23). Cyber Insurance: Insurers and Policyholders Face Challenges in an Evolving Market, Available online: https:\/\/www.gao.gov\/assets\/gao-21-477.pdf."},{"key":"ref_28","first-page":"25","article-title":"A literature review of security threats to wireless networks","volume":"7","author":"Kumar","year":"2014","journal-title":"Int. J. Future Gener. Commun. Netw."},{"key":"ref_29","doi-asserted-by":"crossref","unstructured":"Peng, H. (2012, January 21\u201323). WIFI network information security analysis research. Proceedings of the 2nd International Conference on Consumer Electronics, Communications and Networks (CECNet), Yichang, China.","DOI":"10.1109\/CECNet.2012.6201786"},{"key":"ref_30","doi-asserted-by":"crossref","first-page":"172","DOI":"10.1016\/j.procs.2015.12.009","article-title":"Wi-Fi security analysis","volume":"73","author":"Mekhaznia","year":"2015","journal-title":"Procedia Comput. Sci."},{"key":"ref_31","doi-asserted-by":"crossref","unstructured":"Kohlios, C.P., and Hayajneh, T. (2018). A comprehensive attack flow model and security analysis for Wi-Fi and WPA3. Electronics, 7.","DOI":"10.20944\/preprints201809.0524.v1"},{"key":"ref_32","doi-asserted-by":"crossref","unstructured":"Luo, Z., Yu, G., Qi, H., and Liu, Y. (2013, January 16\u201318). Research of a VPN secure networking model. Proceedings of the 2nd International Conference on Measurement, Information and Control, Harbin, China.","DOI":"10.1109\/MIC.2013.6758028"},{"key":"ref_33","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1088\/1742-6596\/1714\/1\/012045","article-title":"Common vulnerabilities exposed in VPN \u2013 A survey","volume":"1714","author":"Bansode","year":"2021","journal-title":"J. Phys. Conf. Ser."},{"key":"ref_34","doi-asserted-by":"crossref","unstructured":"Uskov, A.V. (2012, January 6\u20138). Information security of mobile VPN: Conceptual models and design methodology. Proceedings of the IEEE International Conference on Electro\/Information Technology, Indianapolis, IN, USA.","DOI":"10.1109\/EIT.2012.6220739"},{"key":"ref_35","doi-asserted-by":"crossref","unstructured":"Hong, Y.R., and Kim, D. (2011). Security enhancement of smart phones for enterprises by applying mobile VPN technologies. International Conference on Computational Science and Its Applications, Springer.","DOI":"10.1007\/978-3-642-21931-3_39"},{"key":"ref_36","doi-asserted-by":"crossref","first-page":"67","DOI":"10.1007\/s40860-021-00160-3","article-title":"Securing the operation of Smart Home Systems: A literature review","volume":"8","author":"Amraoui","year":"2021","journal-title":"J. Reliab. Intell. Environ."},{"key":"ref_37","first-page":"6","article-title":"Smart home automation: A literature review","volume":"2016","author":"Gunge","year":"2016","journal-title":"Int. J. Comput. Appl."},{"key":"ref_38","doi-asserted-by":"crossref","unstructured":"Lin, H., and Bergmann, N.W. (2016). IoT privacy and security challenges for smart home environments. Information, 7.","DOI":"10.3390\/info7030044"},{"key":"ref_39","doi-asserted-by":"crossref","unstructured":"Geneiatakis, D., Kounelis, I., Neisse, R., Nai-Fovino, I., Steri, G., and Baldini, G. (2017, January 22\u201326). Security and privacy issues for an IoT based smart home. Proceedings of the 40th International Convention on Information and Communication Technology, Electronics and Microelectronics (MIPRO), Opatija, Croatia.","DOI":"10.23919\/MIPRO.2017.7973622"},{"key":"ref_40","doi-asserted-by":"crossref","unstructured":"Zhang, N., Mi, X., Feng, X., Wang, X., Tian, Y., and Qian, F. (2019, January 19\u201323). Dangerous skills: Understanding and mitigating security risks of voice-controlled third-party functions on virtual personal assistant systems. Proceedings of the IEEE Symposium on Security and Privacy (S&P), San Francisco, CA, USA.","DOI":"10.1109\/SP.2019.00016"},{"key":"ref_41","doi-asserted-by":"crossref","first-page":"469","DOI":"10.1007\/s12599-017-0497-x","article-title":"Shadow IT","volume":"59","author":"Haag","year":"2017","journal-title":"Bus. Inf. Syst. Eng."},{"key":"ref_42","doi-asserted-by":"crossref","first-page":"144","DOI":"10.5755\/j01.itc.49.1.23801","article-title":"Shadow IT\u2014Systematic literature review","volume":"49","author":"Sakal","year":"2020","journal-title":"Inf. Technol. Control."},{"key":"ref_43","unstructured":"Silic, M. (2022, May 31). Emerging from the Shadows: Survey Evidence of Shadow IT Use from Blissfully Ignorant Employees. SSRN 2633000. Available online: https:\/\/papers.ssrn.com\/sol3\/papers.cfm?abstract_id=2633000."},{"key":"ref_44","doi-asserted-by":"crossref","unstructured":"Weidman, J., and Grossklags, J. (2017, January 4\u20138). I like it, but I hate it: Employee perceptions towards an institutional transition to BYOD second-factor authentication. Proceedings of the 33rd Annual Computer Security Applications Conference, Orlando, FL, USA.","DOI":"10.1145\/3134600.3134629"},{"key":"ref_45","doi-asserted-by":"crossref","unstructured":"Tambo, T., Olsen, M., and B\u00e6kgaard, L. (2016). Motives for feral systems in Denmark. Web Design and Development: Concepts, Methodologies, Tools, and Applications, IGI Global.","DOI":"10.4018\/978-1-4666-8619-9.ch010"},{"key":"ref_46","doi-asserted-by":"crossref","first-page":"644","DOI":"10.1108\/JEIM-07-2015-0066","article-title":"Missing cloud security awareness: Investigating risk exposure in shadow IT","volume":"30","author":"Walterbusch","year":"2017","journal-title":"J. Enterp. Inf. Manag."},{"key":"ref_47","doi-asserted-by":"crossref","unstructured":"Aldawood, H., and Skinner, G. (2018, January 4\u20137). Educating and raising awareness on cyber security social engineering: A literature review. Proceedings of the IEEE International Conference on Teaching, Assessment, and Learning for Engineering (TALE), Wollongong, Australia.","DOI":"10.1109\/TALE.2018.8615162"},{"key":"ref_48","doi-asserted-by":"crossref","unstructured":"Hadnagy, C. (2018). Social Engineering: The Science of Human Hacking, John Wiley & Sons.","DOI":"10.1002\/9781119433729"},{"key":"ref_49","doi-asserted-by":"crossref","first-page":"7152","DOI":"10.1109\/ACCESS.2020.3048839","article-title":"A Multivocal Literature Review on Growing Social Engineering Based Cyber-Attacks\/Threats during the COVID-19 Pandemic: Challenges and Prospective Solutions","volume":"9","author":"Hijji","year":"2021","journal-title":"IEEE Access"},{"key":"ref_50","unstructured":"Department of Justice, USA (2022, January 13). Three Individuals Charged for Alleged Roles in Twitter Hack, Available online: https:\/\/www.justice.gov\/usao-ndca\/pr\/three-individuals-charged-alleged-roles-twitter-hack."},{"key":"ref_51","doi-asserted-by":"crossref","first-page":"165","DOI":"10.1016\/j.cose.2013.12.003","article-title":"Determining employee awareness using the human aspects of information security questionnaire (HAIS-Q)","volume":"42","author":"Parsons","year":"2014","journal-title":"Comput. Secur."},{"key":"ref_52","doi-asserted-by":"crossref","unstructured":"Amankwa, E., Loock, M., and Kritzinger, E. (2015, January 15\u201317). Enhancing information security education and awareness: Proposed characteristics for a model. Proceedings of the Second International Conference on Information Security and Cyber Forensics (InfoSec), Cape Town, South Africa.","DOI":"10.1109\/InfoSec.2015.7435509"},{"key":"ref_53","doi-asserted-by":"crossref","unstructured":"Hudock, A., Weidman, J., and Grossklags, J. (2020, January 6\u20139). Security onboarding: An interview study on security training for temporary employees. Proceedings of the Conference on Mensch und Computer, Magdeburg, Germany.","DOI":"10.1145\/3404983.3405525"},{"key":"ref_54","doi-asserted-by":"crossref","unstructured":"Choong, Y.Y., and Theofanos, M. (2015). What 4,500+ people can tell you\u2014Employees\u2019 attitudes toward organizational password policy do matter. International Conference on Human Aspects of Information Security, Privacy, and Trust, Springer.","DOI":"10.1007\/978-3-319-20376-8_27"},{"key":"ref_55","doi-asserted-by":"crossref","first-page":"tyz015","DOI":"10.1093\/cybsec\/tyz015","article-title":"\u201cPasswords protect my stuff\u201d\u2014A study of children\u2019s password practices","volume":"5","author":"Choong","year":"2019","journal-title":"J. Cybersecur."},{"key":"ref_56","unstructured":"Said, H., Guimaraes, M., Al Mutawa, N., and Al Awadhi, I. (2011, January 11\u201314). Forensics and war-driving on unsecured wireless network. Proceedings of the 2011 International Conference for Internet Technology and Secured Transactions, Abu Dhabi, United Arab Emirates."},{"key":"ref_57","unstructured":"Moscaritolo, A. (2022, January 13). 35 Percent of People Never Change Their Passwords, PC Magazine (UK). Available online: https:\/\/uk.pcmag.com\/password-managers\/116459\/35-percent-of-people-never-change-their-passwords."},{"key":"ref_58","doi-asserted-by":"crossref","unstructured":"Quilantang, K.A.G., Rivera, J.A.C., Pinili, M.V.M., Magpantay, A.J.N.R., Busia Blancaflor, E., and Pastrana, J.R.A.M. (2021, January 16\u201318). Exploiting Windows 7 vulnerabilities using penetration testing tools: A case study about Windows 7 vulnerabilities. Proceedings of the 9th International Conference on Computer and Communications Management, Singapore.","DOI":"10.1145\/3479162.3479181"},{"key":"ref_59","doi-asserted-by":"crossref","unstructured":"Kotzias, P., Bilge, L., Vervier, P.A., and Caballero, J. (2019, January 24\u201327). Mind Your Own Business: A Longitudinal Study of Threats and Vulnerabilities in Enterprises. Proceedings of the Network and Distributed Systems Security (NDSS), San Diego, CA, USA.","DOI":"10.14722\/ndss.2019.23522"},{"key":"ref_60","doi-asserted-by":"crossref","unstructured":"Haney, J.M., Furman, S.M., and Acar, Y. (2020). Smart home security and privacy mitigations: Consumer perceptions, practices, and challenges. International Conference on Human-Computer Interaction, Springer.","DOI":"10.1007\/978-3-030-50309-3_26"},{"key":"ref_61","first-page":"19","article-title":"Study on Improving Endpoint Security Technology","volume":"18","author":"Yoo","year":"2018","journal-title":"Converg. Secur. J."},{"key":"ref_62","doi-asserted-by":"crossref","first-page":"2023","DOI":"10.1007\/s11277-018-5920-1","article-title":"Energy efficient data encryption techniques in smartphones","volume":"106","author":"Mujtaba","year":"2019","journal-title":"Wirel. Pers. Commun."},{"key":"ref_63","unstructured":"Reinheimer, B., Aldag, L., Mayer, P., Mossano, M., Duezguen, R., Lofthouse, B., and Volkamer, M. (2020, January 7\u201311). An investigation of phishing awareness and education over time: When and how to best remind users. Proceedings of the Sixteenth Symposium on Usable Privacy and Security (SOUPS), Online Conference."},{"key":"ref_64","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1186\/s13673-020-00237-7","article-title":"Don\u2019t click: Towards an effective anti-phishing training. A comparative literature review","volume":"10","author":"Jampen","year":"2020","journal-title":"Hum. Centric Comput. Inf. Sci."},{"key":"ref_65","doi-asserted-by":"crossref","unstructured":"Scholefield, S., and Shepherd, L.A. (2019). Gamification techniques for raising cyber security awareness. International Conference on Human-Computer Interaction, Springer.","DOI":"10.1007\/978-3-030-22351-9_13"},{"key":"ref_66","unstructured":"Rieff, I. (2018). Systematically Applying Gamification to Cyber Security Awareness Trainings: A Framework and Case Study Approach. [Master\u2019s Thesis, Faculty of TPM, Delft University of Technology]."},{"key":"ref_67","unstructured":"Tabassum, M., Kosinski, T., and Lipford, H.R. (2019, January 11\u201313). \u201cI don\u2019t own the data\u201d: End user perceptions of smart home device data practices and risks. Proceedings of the Fifteenth Symposium on Usable Privacy and Security (SOUPS), Santa Clara, CA, USA."},{"key":"ref_68","first-page":"437","article-title":"I want it anyway: Consumer perceptions of smart home devices","volume":"60","author":"Wang","year":"2018","journal-title":"J. Comput. Inf. Syst."},{"key":"ref_69","first-page":"3","article-title":"Internet of things (IoT) of smart home: Privacy and security","volume":"182","author":"Shouran","year":"2019","journal-title":"Int. J. Comput. Appl."},{"key":"ref_70","doi-asserted-by":"crossref","unstructured":"Hubbard, D.W., and Seiersen, R. (2016). How to Measure Anything in Cybersecurity Risk, John Wiley & Sons.","DOI":"10.1002\/9781119162315"},{"key":"ref_71","unstructured":"Kerkdijk, R., Tesink, S., Fransen, F., and Falconieri, F. (2022, January 13). Evidence-Based Prioritization of Cybersecurity Threats. ISACA. Available online: https:\/\/www.isaca.org\/resources\/isaca-journal\/issues\/2021\/volume-6\/evidence-based-prioritization-of-cybersecurity-threats."},{"key":"ref_72","doi-asserted-by":"crossref","first-page":"1713","DOI":"10.1007\/s11036-018-1047-6","article-title":"Incorporating FAIR into Bayesian network for numerical assessment of loss event frequencies of smart grid cyber threats","volume":"24","author":"Le","year":"2019","journal-title":"Mob. Netw. Appl."}],"container-title":["Journal of Cybersecurity and Privacy"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/2624-800X\/2\/3\/25\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,10]],"date-time":"2025-10-10T23:39:43Z","timestamp":1760139583000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/2624-800X\/2\/3\/25"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,6,28]]},"references-count":72,"journal-issue":{"issue":"3","published-online":{"date-parts":[[2022,9]]}},"alternative-id":["jcp2030025"],"URL":"https:\/\/doi.org\/10.3390\/jcp2030025","relation":{},"ISSN":["2624-800X"],"issn-type":[{"value":"2624-800X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,6,28]]}}}