CyberSecurity Challenges for Software Developer Awareness Training in Industrial Environments
This work addresses cybersecurity training for software developers in industrial settings, but it is incremental as it builds on existing serious game approaches without introducing a new paradigm.
The paper tackled the problem of raising software developers' awareness of secure coding in industrial environments by proposing 'CyberSecurity Challenges', a serious game, and reported on its design, perceived benefits, and practical advice based on experience in an industrial setting.
Awareness of cybersecurity topics facilitates software developers to produce secure code. This awareness is especially important in industrial environments for the products and services in critical infrastructures. In this work, we address how to raise awareness of software developers on the topic of secure coding. We propose the "CyberSecurity Challenges", a serious game designed to be used in an industrial environment and address software developers' needs. Our work distils the experience gained in conducting these CyberSecurity Challenges in an industrial setting. The main contributions are the design of the CyberSecurity Challenges events, the analysis of the perceived benefits, and practical advice for practitioners who wish to design or refine these games.