Jandika Triindra Burhan
Telkom University

Published : 1 Documents Claim Missing Document
Claim Missing Document
Check
Articles

Found 1 Documents
Search

The Developing a CIS Framework-Based Training Syllabus for Venture Capital Firms: A Competency-Driven Approach Jandika Triindra Burhan; Farisya Setiadi; Rio Guntur Utomo
IJoICT (International Journal on Information and Communication Technology) Vol. 12 No. 1 (2026): Vol.12 No.1 Jun 2026
Publisher : School of Computing, Telkom University

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.21108/ijoict.v12i1.10605

Abstract

The purpose of this study is to develop and validate a role-based cybersecurity training syllabus forVenture Capital (VC) firms using the CIS Critical Security Controls v8.1 (Implementation Group1) and an Outcome-Based Education (OBE) approach grounded in a cybersecurity-adapted TrainingNeeds Assessment (TNA) framework. A mixed-method design was employed. In the qualitativephase, interviews with IT personnel and senior management were conducted to identify dominantcybersecurity risks in VC environments. In the quantitative phase, a structured survey wasdistributed to VC employees to assess the relevance, clarity, and applicability of the proposedsyllabus. Content validity was evaluated through expert judgment using the Content Validity Ratio(CVR), while employee acceptance and internal consistency were examined using Cronbach’sAlpha. The results show that the most critical risks in VC firms are low security awareness, phishingthreats, and compliance-related vulnerabilities. Three CIS IG1 controls—Security AwarenessTraining, Malware Defenses, and Incident Response Management—were prioritized as corecontent. The final syllabus integrates these controls into role-specific learning outcomes andassessment strategies aligned with OBE principles. Validation results indicate strong expertagreement and high employee acceptance, supporting the syllabus as relevant, understandable, andsuitable for implementation in VC firms.