Information Security Awareness can be viewed as knowing something about information security. One’s awareness of information security may be built from direct life experiences, such as having once been harmed by a virus attack or penalized for not adhering to security rules and regulations, or it can be based on information obtained from external sources, such as newspapers, professional journals, organizational policy documents, and/or organizational workshops