To Örebro University

oru.seÖrebro University Publications
Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
A systematic mapping study on gamification within information security awareness programs
Department of Informatics, Örebro University, Örebro, Sweden.
Örebro University, Örebro University School of Business.ORCID iD: 0000-0002-3722-6797
2024 (English)In: Heliyon, E-ISSN 2405-8440, Vol. 10, no 19, article id e38474Article, review/survey (Refereed) Published
Abstract [en]

Information security awareness (ISA) has become a vital issue for organizations, as security breaches are usually attributed to human errors. ISP programs are effective ways to educate employees and enhance their information security knowledge. Gamification is a new concept in the area of ISA programs and it has been proven to be one of the most effective and proper ISA methods in both the private and public sectors. Despite a growing interest in employing gamification as an ISP program in recent years, there is a lack of study to provide a comprehensive overview of gamification within ISA programs and identify trends, patterns, and research gaps in this area in order to direct future research. To bridge this gap, a systematic mapping study is adopted as a research methodology. A total of 69 papers were selected and classified by document type, year of publication, research type, research contribution, gamification type, gamification in terms of adaptivity based on the target group, and gamification in terms of the use of artificial intelligence (AI) in order to make it user-tailored. The mapping study revealed that the published papers in this area were split between journals and conference papers with a higher proportion published in conference proceedings. Regarding the publication trend, from 2015 to 2022, gamification within ISA programs has come across to researchers' attention. The identified two main research types were evaluation research and validation research and the vast majority of the contribution type was tools. Moreover, content gamification has been used more commonly in ISA programs than structural gamification. Furthermore, the finding indicated that there were clear gaps in employing adaptive gamification, dynamic adaptive gamification and AI-based adaptive gamification, which makes these areas significant for future research.

Place, publisher, year, edition, pages
Elsevier, 2024. Vol. 10, no 19, article id e38474
Keywords [en]
Artificial intelligence, Gamification, ISA programs, Information security, Information security awareness, Systematic mapping
National Category
Other Computer and Information Science
Identifiers
URN: urn:nbn:se:oru:diva-116782DOI: 10.1016/j.heliyon.2024.e38474PubMedID: 39398049Scopus ID: 2-s2.0-85204903010OAI: oai:DiVA.org:oru-116782DiVA, id: diva2:1905986
Available from: 2024-10-16 Created: 2024-10-16 Last updated: 2024-10-16Bibliographically approved

Open Access in DiVA

No full text in DiVA

Other links

Publisher's full textPubMedScopus

Authority records

Gao, Shang

Search in DiVA

By author/editor
Gao, Shang
By organisation
Örebro University School of Business
In the same journal
Heliyon
Other Computer and Information Science

Search outside of DiVA

GoogleGoogle Scholar

doi
pubmed
urn-nbn

Altmetric score

doi
pubmed
urn-nbn
Total: 94 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf