Skip to content

Cyber Awareness

What is Cyber Awareness?

The knowledge and attitudes that members of an organization possess regarding the protection of information assets and cybersecurity best practices.

Information Security

Each of these is named in at least one of the same controls as cyber awareness. The number is how many controls name both.

What the standards actually require on cyber awareness

Requirements naming cyber awareness across 4 standards, quoted from the control text.

UR E26 implementation requirements cover training + supplier management. Crew training: cyber awareness for all crew (phishing + social engineering + USB hygiene + password + reporting);

IACS-UR-E26-Implementation-Training-Supplier-OEM-OnboardTraining · IACS UR E26 Implementation - Training + Awareness + Supplier + OEM Management + Cyber Hygiene

NSS-17 + NSS-42-G require personnel security + trustworthiness verification + training + awareness aligned with CSL access. Personnel security: background check + criminal record + financial + employment history + reference check + national security clearance...

IAEA-NSS17-Personnel-Trustworthiness-Training-Awareness · IAEA NSS-17 - Personnel Security + Trustworthiness + Training + Awareness + Cyber Hygiene

Protect is the second of five functional elements per MSC-FAL.1/Circ.3/Rev.2. Activities include: (1) Access Control - identity and access management for IT + OT systems + role-based access + least privilege + privileged access management (PAM) for OT engineer...

IMO-MSC-FAL-Protect-AccessControl-NetworkSegmentation-MalwareDefence-Patch-Awareness-DataSecurity · IMO MSC-FAL Protect Function - Access Control + Network Segmentation + Malware Defence + Patch Management + Awareness Training + Data Security + Crew BYOD + Removable Media

Audit + Drills + Training operationalise the Directions through ongoing assurance + cyber preparedness. (1) CERT-In Cyber Security Audit: organisations should undergo periodic cyber security audit by CERT-In Empanelled Information Security Auditing Organisatio...

CERTIN-Audit-Drills-Training-AwarenessProgram-CERTInExercises-CISO · CERT-In Audit + Cyber Security Drills + Training + Awareness + CERT-In Cyber Exercises + CISO + Information Security Auditor Empanelment

Questions people ask about cyber awareness

What is Cyber Awareness?
The knowledge and attitudes that members of an organization possess regarding the protection of information assets and cybersecurity best practices.
Why is Cyber Awareness important for compliance?
Cyber Awareness is a key concept in Information Security. Understanding cyber awareness helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address Cyber Awareness?
Cyber Awareness appears in the requirement text of IACS Unified Requirements E26/E27 - Cyber Resilience of Ships and On-Board Systems, IAEA Nuclear Security Series - Computer Security at Nuclear Facilities (NSS-17-T Rev 1), IMO Maritime Cybersecurity Guidelines (MSC-FAL.1/Circ.3/Rev.2), India CERT-In Cyber Security Directions 2022. Across these standards we have identified 4 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about Cyber Awareness?
Explore our compliance framework pages to see how cyber awareness applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how Cyber Awareness applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.