Ten commandments for effective security training

03.05.2012

Conceptual knowledge provides the big picture and lets a person apply techniques to solve a problem. Procedural knowledge focuses on the specific actions required to solve the problem.

Combining the two types of knowledge greatly enhances users' understanding. For example, a user may need a procedural lesson to understand that an IP address included in a URL is an indication that they are seeing a phishing URL. However, they also need the conceptual understanding of all the parts of a URL to understand the difference between an IP address and a domain name, otherwise they may mistake something like www4.google.com for a URL.

Joe Ferrara is president and CEO of Wombat Security Technologies.