{"id":"https://openalex.org/W2001982411","doi":"https://doi.org/10.1145/1029533.1029578","title":"Teaching security <i>best practices</i> by architecting and administering an IT security lab","display_name":"Teaching security <i>best practices</i> by architecting and administering an IT security lab","publication_year":2004,"publication_date":"2004-10-28","ids":{"openalex":"https://openalex.org/W2001982411","doi":"https://doi.org/10.1145/1029533.1029578","mag":"2001982411"},"language":"en","primary_location":{"id":"doi:10.1145/1029533.1029578","is_oa":false,"landing_page_url":"https://doi.org/10.1145/1029533.1029578","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 5th conference on Information technology education","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5083900328","display_name":"Brady R. Stevenson","orcid":null},"institutions":[{"id":"https://openalex.org/I100005738","display_name":"Brigham Young University","ror":"https://ror.org/047rhhm47","country_code":"US","type":"education","lineage":["https://openalex.org/I100005738"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Brady R. Stevenson","raw_affiliation_strings":["Brigham Young University"],"affiliations":[{"raw_affiliation_string":"Brigham Young University","institution_ids":["https://openalex.org/I100005738"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5016784958","display_name":"Gordon W. Romney","orcid":"https://orcid.org/0009-0005-1361-7725"},"institutions":[{"id":"https://openalex.org/I100005738","display_name":"Brigham Young University","ror":"https://ror.org/047rhhm47","country_code":"US","type":"education","lineage":["https://openalex.org/I100005738"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Gordon W. Romney","raw_affiliation_strings":["Brigham Young University"],"affiliations":[{"raw_affiliation_string":"Brigham Young University","institution_ids":["https://openalex.org/I100005738"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5083900328"],"corresponding_institution_ids":["https://openalex.org/I100005738"],"apc_list":null,"apc_paid":null,"fwci":1.5781,"has_fulltext":false,"cited_by_count":10,"citation_normalized_percentile":{"value":0.88742917,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":96},"biblio":{"volume":"54","issue":null,"first_page":"182","last_page":"187"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":0.9904000163078308,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T10917","display_name":"Smart Grid Security and Resilience","score":0.9732999801635742,"subfield":{"id":"https://openalex.org/subfields/2207","display_name":"Control and Systems Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/best-practice","display_name":"Best practice","score":0.7863285541534424},{"id":"https://openalex.org/keywords/information-security","display_name":"Information security","score":0.655552864074707},{"id":"https://openalex.org/keywords/standard-of-good-practice","display_name":"Standard of Good Practice","score":0.6365545392036438},{"id":"https://openalex.org/keywords/information-assurance","display_name":"Information assurance","score":0.5371471047401428},{"id":"https://openalex.org/keywords/certified-information-security-manager","display_name":"Certified Information Security Manager","score":0.533288300037384},{"id":"https://openalex.org/keywords/security-service","display_name":"Security service","score":0.5007259845733643},{"id":"https://openalex.org/keywords/security-awareness","display_name":"Security awareness","score":0.49498456716537476},{"id":"https://openalex.org/keywords/information-security-standards","display_name":"Information security standards","score":0.4924493730068207},{"id":"https://openalex.org/keywords/cloud-computing-security","display_name":"Cloud computing security","score":0.4835750460624695},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.46498483419418335},{"id":"https://openalex.org/keywords/critical-security-studies","display_name":"Critical security studies","score":0.45362937450408936},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.45193374156951904},{"id":"https://openalex.org/keywords/software-security-assurance","display_name":"Software security assurance","score":0.44776517152786255},{"id":"https://openalex.org/keywords/security-engineering","display_name":"Security engineering","score":0.4451688826084137},{"id":"https://openalex.org/keywords/engineering-management","display_name":"Engineering management","score":0.43565744161605835},{"id":"https://openalex.org/keywords/security-information-and-event-management","display_name":"Security information and event management","score":0.43115752935409546},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4285101294517517},{"id":"https://openalex.org/keywords/security-through-obscurity","display_name":"Security through obscurity","score":0.4247363209724426},{"id":"https://openalex.org/keywords/certified-information-systems-security-professional","display_name":"Certified Information Systems Security Professional","score":0.4118894040584564},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.29635268449783325},{"id":"https://openalex.org/keywords/network-security-policy","display_name":"Network security policy","score":0.1411277949810028},{"id":"https://openalex.org/keywords/management","display_name":"Management","score":0.13279852271080017},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.11989456415176392}],"concepts":[{"id":"https://openalex.org/C184356942","wikidata":"https://www.wikidata.org/wiki/Q830382","display_name":"Best practice","level":2,"score":0.7863285541534424},{"id":"https://openalex.org/C527648132","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information security","level":2,"score":0.655552864074707},{"id":"https://openalex.org/C47309137","wikidata":"https://www.wikidata.org/wiki/Q7598357","display_name":"Standard of Good Practice","level":5,"score":0.6365545392036438},{"id":"https://openalex.org/C2780795517","wikidata":"https://www.wikidata.org/wiki/Q6030997","display_name":"Information assurance","level":3,"score":0.5371471047401428},{"id":"https://openalex.org/C180823521","wikidata":"https://www.wikidata.org/wiki/Q1662502","display_name":"Certified Information Security Manager","level":5,"score":0.533288300037384},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.5007259845733643},{"id":"https://openalex.org/C2778652015","wikidata":"https://www.wikidata.org/wiki/Q7445019","display_name":"Security awareness","level":3,"score":0.49498456716537476},{"id":"https://openalex.org/C139547956","wikidata":"https://www.wikidata.org/wiki/Q6031202","display_name":"Information security standards","level":5,"score":0.4924493730068207},{"id":"https://openalex.org/C184842701","wikidata":"https://www.wikidata.org/wiki/Q370563","display_name":"Cloud computing security","level":3,"score":0.4835750460624695},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.46498483419418335},{"id":"https://openalex.org/C505623098","wikidata":"https://www.wikidata.org/wiki/Q3002932","display_name":"Critical security studies","level":5,"score":0.45362937450408936},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.45193374156951904},{"id":"https://openalex.org/C62913178","wikidata":"https://www.wikidata.org/wiki/Q7554361","display_name":"Software security assurance","level":4,"score":0.44776517152786255},{"id":"https://openalex.org/C13159133","wikidata":"https://www.wikidata.org/wiki/Q365674","display_name":"Security engineering","level":5,"score":0.4451688826084137},{"id":"https://openalex.org/C110354214","wikidata":"https://www.wikidata.org/wiki/Q6314146","display_name":"Engineering management","level":1,"score":0.43565744161605835},{"id":"https://openalex.org/C103377522","wikidata":"https://www.wikidata.org/wiki/Q3493999","display_name":"Security information and event management","level":4,"score":0.43115752935409546},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4285101294517517},{"id":"https://openalex.org/C114869243","wikidata":"https://www.wikidata.org/wiki/Q133735","display_name":"Security through obscurity","level":5,"score":0.4247363209724426},{"id":"https://openalex.org/C169537543","wikidata":"https://www.wikidata.org/wiki/Q1056312","display_name":"Certified Information Systems Security Professional","level":5,"score":0.4118894040584564},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.29635268449783325},{"id":"https://openalex.org/C117110713","wikidata":"https://www.wikidata.org/wiki/Q3394676","display_name":"Network security policy","level":4,"score":0.1411277949810028},{"id":"https://openalex.org/C187736073","wikidata":"https://www.wikidata.org/wiki/Q2920921","display_name":"Management","level":1,"score":0.13279852271080017},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.11989456415176392},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/1029533.1029578","is_oa":false,"landing_page_url":"https://doi.org/10.1145/1029533.1029578","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 5th conference on Information technology education","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/9","display_name":"Industry, innovation and infrastructure","score":0.6100000143051147}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":1,"referenced_works":["https://openalex.org/W840033529"],"related_works":["https://openalex.org/W2483557577","https://openalex.org/W40842196","https://openalex.org/W2601324832","https://openalex.org/W2250961013","https://openalex.org/W43628134","https://openalex.org/W2602294189","https://openalex.org/W2010781006","https://openalex.org/W101048203","https://openalex.org/W2062586119","https://openalex.org/W2267492570"],"abstract_inverted_index":{"Information":[0],"Assurance(IA)":[1],"can":[2,87],"be":[3,89,132],"learned":[4],"by":[5,91,190],"actively":[6],"being":[7],"involved":[8],"in":[9,80,110,217,228,236,245],"the":[10,38,42,63,66,70,81,113,145,173,186,202,205,210,214,241,254],"\"doing\"":[11],"process.":[12],"Students":[13],"within":[14],"a":[15,23,58,103,125,161,176,199,219,224],"university":[16],"setting":[17],"have":[18],"architected,":[19],"installed":[20],"and":[21,28,49,54,77,84,119,163,180,192,213,230,234,260,263],"administered":[22],"security":[24,31,39,67,94,121,146,167,178,188,196,206,211,215,221,238,249],"lab.":[25],"The":[26,141,166,183],"value":[27],"need":[29,59],"for":[30,51,128,195],"<i>best":[32,122,142,250],"practices</i>":[33,123,143,251],"becomes":[34],"self-evident,":[35],"daily,":[36],"as":[37,102],"lab":[40,68,83,147,189,222],"services":[41],"needs":[43],"of":[44,65,73,144,175,185,201,204,258],"information":[45],"technology":[46],"(IT)":[47],"courses":[48,76],"research":[50,85],"both":[52],"undergraduate":[53,191],"graduate":[55,193],"students.":[56],"Additionally,":[57],"exists":[60],"to":[61,117,131,247,252],"coordinate":[62],"administration":[64],"with":[69],"ongoing":[71],"operation":[72],"general":[74],"IT":[75,151,187,232,261],"labs.":[78],"Stability":[79],"infrastructure,":[82],"areas":[86],"only":[88],"achieved":[90],"designing":[92],"good":[93],"best":[95,98,168,207],"practices.":[96,208,239],"A":[97],"practice":[99],"is":[100,124,223],"defined":[101],"process":[104],"that":[105,155],"has":[106],"performed":[107],"exceptionally":[108],"well":[109],"industry":[111,152],"or":[112,138],"everyday":[114],"world.":[115],"Learning":[116],"design":[118],"implement":[120],"teaching":[126,264],"opportunity":[127],"students":[129,194],"preparing":[130],"Network":[133],"Engineers,":[134],"Security":[135,139],"System":[136],"Engineers":[137],"Architects.":[140],"were":[148,170],"patterned":[149],"after":[150],"policy":[153],"concepts":[154],"effectively":[156],"handled":[157],"change":[158],"while":[159],"maintaining":[160],"secure":[162],"stable":[164],"infrastructure.":[165],"practices":[169],"developed":[171],"under":[172],"supervision":[174],"student":[177],"team":[179,212],"faculty":[181],"advisor.":[182],"use":[184],"projects":[197],"provided":[198],"test":[200],"viability":[203],"With":[209],"policies":[216],"place,":[218],"working":[220],"realistic":[225],"learning":[226],"model":[227],"training":[229],"educating":[231],"undergraduates":[233],"graduates":[235],"proper":[237],"Furthermore,":[240],"experience":[242],"provides":[243],"guidance":[244],"how":[246],"expand":[248],"include":[253],"entire":[255],"educational":[256],"enterprise":[257],"laboratories":[259],"infrastructure":[262],"areas.":[265]},"counts_by_year":[{"year":2015,"cited_by_count":2},{"year":2013,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
