Ben-Asher, N., & Gonzalez, C. (2015). Effects of cybersecurity knowledge on attack detection. Computers in Human Behavior, 48, 51-61.

The approach used was experimental because the researcher could identify the course of and effects as well manipulate the study by rewarding and punishing the participants. At the end of the research, one could understand the relationship between the numbers of years the participants have worked and the results they got.

The study contributed to a better understanding of the process human being used in detecting cyber-attacks. The study showed that there is major difference between novices and expert in detecting an attack is that both could detect malicious events taking place, but a novice could not detect whether the event would lead to cyber-attack compared to their counterparts. This is because experts had comprehensive knowledge that helps them to infer the network event, and understand the relationship between various attributes involved in an event and judge the events correcting within the context. The importance of applying this knowledge is that employers in large companies dealing with crucial information will be able to select gurus to work in their companies to ensure all essential information are protected.

Positivism theory is applied in the research to understand a complex nature of protecting data from cyber-attack (Michell, 2003). The study is broken into small parts to ensure the results are accurate. This is achieved by separating the novice and IT experts to identify who is more accurate to detect a cyber crime and how each group countered the event. The experiment will help in measuring how the numbered of years worked increased human cognitive levels.

The researchers may have used a multi-step cluster selection when selecting the students who were only studying computers related courses such as computer science and IT (Oakshoott, 2016). From this group, 50 participants are selected randomly to participate in the study. In additions, computer experts from various organizations were selected randomly online to participate in the research. This procedure was appropriate and would give reliable results since the investigators selected their participants freely hence the results were not biased.

The participants participated in a pretest procedures where they were tested whether they could be able to detect whether an event was a cyber-attack or no- attack events. They have presented the scenarios using IDS-tool, and each new event appeared on the monitor after every 10 seconds. A post-test was conducted where the novice viewed ten scenarios randomly and answered a question to know their confidence when making their decision. The experts were presented with three random scenarios and also given questionnaires to fill. The novice took 60 minutes to complete the questionnaires while the experts used just 25 minutes. This procedure is appropriate as it shows that experts have confidence in their decision-making hence can quickly avert a cyber attack.

The data was analyzed using tabulation method to show the percentages of a novice who were able to make the correct decision as well as the experts (Oakshott, 2016). This procedure is appropriate since it shows clearly in percentage form the group that is fit to be employed in the organization to detect cyber-attacks and protects the data well.

Due to the amount taken to make a decision, it is clear that experts are more confident in making cyber-attack decisions than a novice. Also, cyber security analysts are cautious when monitoring a network to avert cyber crimes. The facts that novice took a longer time to make decisions shows that the level expertise and practical knowledge are crucial in the analysis cyber crime events. This answers the questions of how the human cognitive levels affect the cyber security.

Michell, J. (2003). Pragmatism, Positivism and the Quantitative Imperative. Theory & Psychology, 13(1), 45-52.

Oakshott, L. (2016). Interpreting with confidence: analysis of sample data. Essential Quantitative Methods, 172-190.


