Skip to main content
Have a personal or library account? Click to login
From Awareness to Practice: Domain-Specific Information Security Awareness as a Predictor of Self-Reported Cybersecurity Practices among University Personnel Cover

From Awareness to Practice: Domain-Specific Information Security Awareness as a Predictor of Self-Reported Cybersecurity Practices among University Personnel

By:   
Open Access
|Jul 2026

Abstract

This study examined information security awareness as a predictor of self-reported cybersecurity practices among 160 personnel of a state university in the Philippines. Awareness was measured across six domains: password security, phishing, device security, data protection, security policy, and social engineering. Results showed moderate to high awareness and reported practices, with uneven domain patterns. Multiple regression indicated that awareness domains explained 55.8% of the variance in reported practices. Password security, phishing, and social engineering awareness were significant predictors, while security policy, data protection, and device security were not. However, these findings should be understood in the context of self-reported cybersecurity practices, which may differ from actual behavior.

DOI: https://doi.org/10.2478/ias-2026-0009 | Journal eISSN: 1554-1029 | Journal ISSN: 1554-1010
Language: English
Page range: 173 - 190
Published on: Jul 8, 2026
In partnership with: Paradigm Publishing Services
Publication frequency: 6 issues per year

© 2026 Noli B. Lucila, published by Cerebration Science Publishing Co., Limited
This work is licensed under the Creative Commons Attribution-NonCommercial-ShareAlike 4.0 License.