Table 3

The relationships between the CSFs within the SETA program lifecycle phases

CSFHas an impact onRelationshipDescription
CSF-DS3: Make a Yearly Plan to Align Goals and ObjectivesCSF-DS4: Design for cultural context and employee cultural diversityPlanningEnables the design of a programme plan that aligns with the organizational cultural context
CSF-DS5: Adhere to organizational security policy and the “Law of the Land”Enables the design of a programme plan that considers organizational security policy and geographical legislation
CSF-DS1: Conduct an Initial Assessment of Employee Security AwarenessCSF-DS6: Build security awareness campaignsInformingEnables the delivery of appropriate campaign materials reflecting the awareness and knowledge levels of the target audiences
CSF-DS2: Know Your Audiences to Ensure Content Suitability
CSF-IM1: Apply Diverse Methods to Deliver Security Awareness MessagesCSF-IM2: Motivate employees to engage in security awarenessEncouragingEnables the use of different communication methods to motivate employees to engage with IS security training materials
CSF-EV2: Measure Employee Reporting of Security IncidentsCSF-EV1: Maintain quarterly evaluation of employee performanceAssessingEnables the performance of an employee to be evaluated using the number of security incidents reported by the employee

Source(s): Authors' own creation/work

or Create an Account

Close Modal
Close Modal