0% found this document useful (0 votes)
14 views6 pages

Information Security Education in Japan

This document discusses the state of information security education for students in Japan, highlighting the curriculum set by the Ministry of Education, Culture, Sports, Science and Technology (MEXT) and the increasing threats from ICT. It outlines the current use of technology among students, their awareness of information security, and the challenges faced in implementing effective education on this topic. The document emphasizes the need for comprehensive information security education across all school levels to address rising cyber threats and improve students' understanding of information ethics.
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
14 views6 pages

Information Security Education in Japan

This document discusses the state of information security education for students in Japan, highlighting the curriculum set by the Ministry of Education, Culture, Sports, Science and Technology (MEXT) and the increasing threats from ICT. It outlines the current use of technology among students, their awareness of information security, and the challenges faced in implementing effective education on this topic. The document emphasizes the need for comprehensive information security education across all school levels to address rising cyber threats and improve students' understanding of information ethics.
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd

Information security education for students in Japan

Introduction

This article aims to introduce the current situation of elementary and secondary school education on
information security in Japan, as well as to provide a brief introduction to the environment
surrounding Japanese students. “Courses of Study” have been stipulated as the general standard for the
curriculum to ensure that Japanese children receive the same level of education wherever they are in
Japan. These Courses of Study are stipulated by a law called the School Education Act under the
jurisdiction of the Ministry of Education, Culture, Sports, Science and Technology (MEXT). The
Courses of Study provide the purpose and the general content of all subjects that students study
according to their stage of development in school, and range from kindergarten to upper secondary
schools. The current Course of Study was presented by the MEXT in 1958 and has been revised every
10 years. The most recent revisions were in 2008 for kindergartens, elementary schools, and lower
schools, and in 2009 for upper secondary schools and schools for Special Needs Education. This
revision was stipulated in the Central Council for Education’s report on “Improving Courses of Study
for Kindergartens, Elementary Schools, Lower and Upper Secondary Schools, and Schools for Special
Needs Education,” which was based on the revision of the School Education Act.

1. Current state of information and communication technology (ICT) use by Japanese students

1-1. Increase of information security threat


According to Figure 1, which shows infection rates by country/region in 2013, Japan has been one of
the relatively healthier countries in the world. However, the environment surrounding ICT in Japan has
been changing day by day, and information security threat has increased too. It can be said that about
147 million viruses have been detected so far; nearly 18 million new malware were found in the
second quarter of 2013.

Figure 1 Infection rate by country/region


1
The number of young people who have their own mobile phone has been on the rise in Japan. Of the
47.4% of young people in elementary school to upper secondary school, 24.1% of elementary school
students and 46.2% of lower secondary school students have their own mobile phone, the Cabinet
Office has reported. Even though less than half of the students have their own mobile phones, malware
that targets mobile phones or smart devices continues to spread. Other than the problem previously
mentioned, as the cyber security threat associated with social media dissemination like Facebook and
Twitter rises, it will become increasingly difficult to protect against such threats.

1-2. Use of ICT by the younger generation

The number of Internet users in Japan reached 96.52 million at the end of 2012, an increase of 420,000
users from the end of 2010, and the Internet population penetration rate was 79.5%. In addition, Figure
X shows that the Internet population penetration rate between the ages of 13 to 19, corresponding to
students of lower and upper secondary school in Japan, reached almost 100% (97.2%), and the rate for
ages 6 to 12, corresponding to elementary school students, is even about 70%. Students are coming
into contact with ICT equipment at an increasingly early age. The percentage of young people who
started using a personal computer in elementary school is 82.7%, with 10.8% starting to use them in
junior high school. According to the Cabinet Office survey, the percentages of Internet use in the
United States for ages 6 to 12 and 14 to 17 are about 73.06% and 84.83% respectively, while in Korea
the percentages of use are about 86% for ages 3 to 9, and 99.9% for teenagers.

10 thousand people %

Figure 2 Transition in the number of Internet users and the population penetration rate

2
Figure 3 Transitions in age groups of Internet users and the population penetration rate

2. Awareness of information security

According to the statistics of the Ministry of Internal Affairs and Communications, those who reported
anxiety due to using the Internet, who were “worried” and “feeling a little uneasy,” accounted for
about half (48.7%). In detail, 72.2% were “concerned about virus infection,” 59.3% were “uncertain
how far security measures should be taken,” and 36.4% were “unable to specifically understand threats
to security.” These results show that anxiety about information security is still high among Japanese
people.

Figure 4 Matters of concern among households that use the Internet (multiple answers permitted)

As described above, Japanese people suffer from anxiety about information security, but about 90%
(88.2%) of Japanese people are planning to introduce some sort of information security measures.
However, as of now, in terms of countermeasures, such as a concrete plan on what needs doing to
eliminate concerns about information security, has been left to each individual. This is not limited to
adults; currently, the presence or absence of the implementation of information security measures, and
guidelines on how to use the Internet, is left to even children of elementary and junior high school age
to figure out.

3
Figure 5 Implementation of information security measures among households (multiple answers
permitted)

3. Information security education in the school curriculum

The importance of computer education in Japan was first emphasized in 1985, with related Ministry
notices issued in 1988 and 1989. The Course of Study based on the 1989 notice, “Basic information”
was first established in the Lower Secondary school curriculum as an optional subject. After that,
“Information and Computers” became a compulsory subject under the Course of Study subject
“Technology and home economics” based on the notification of 1998, and the subject “Information”
was introduced in upper secondary school as a common subject. With the enforcement of “Basic Law
on the Formation of an Advanced Information and Telecommunications Network Society (IT Basic
Law)” in 2001, “e-Japan Strategy,” “New IT Reform Strategy” and “i-Japan Strategy 2015” were
developed as national ICT strategies.

Under the 1998 notification regarding the subject “Technology and home economics,” the course
“Information and Computers” aims to introduce students to the basic knowledge and technologies for
the appropriate use of ICT, make students understand the relationship between ICT and their life and
information ethics, and develop the ability and attitude to utilize information tools on their own
initiative. Lower secondary school students have to learn the following content: 1) roles that ICT play
in daily/school life and industries (characteristics of information technology devices like computers
and information networks, the relationship between daily life and computers, the impact of
computerization on society and daily/school life, information ethics, etc.); 2) basic frameworks,
functions and operations of computers (to know basic frameworks and functions of computers and be
able to operate them etc.); 3) computer use (to know actual usage and process information by means of
software, etc.); and 4) information and telecommunications networks (to know ways to deliver and
utilize information, to collect, evaluate, treat and transmit information etc.). Students also have the
option of taking a course in either 5) utilizing multimedia through the use of computers, or 6)
4
measuring and regulating computer programs depending on their interests. These curriculums cover all
information education in schools, but as for information security education, education regarding
information ethics is part of mainstream education. Information ethics education has to be learnt
systematically from elementary school to upper secondary school. Following the situation, MEXT
presented model curriculums regarding information ethics education in 2007. This model includes
objectives and learning item examples of each school stage and grade, and classifies them into five
categories: 1) ethics of information-based society, 2) understanding and compliance of laws, 3)
knowledge for safety, 4) information security, and 5) construction of a public network society. The
following table shows how the information security curriculum is organized.

Stage Elementary School


1 2 3 4 5 6
Grade
(age 7) (age 8) (age 9) (age 10) (age 11) (age 12)
Know the basics of information security needed for daily life
● Understand the importance of
Objectives ● Able to use ICT that is not accessed
authentication, and use it
illegally
appropriately
● Do not give your passwords to ● Understand that a person has to keep
Learning
anyone one’s password to oneself
item
● Do not leave your laptop ● Learn how to keep personal information
examples
unsupervised. from being leaked
Implement measures to keep
information secure
Objectives
● Learn how to prevent information from
being crushed and leaked.
● Learn about computer viruses
Learning
● Do not give your laptop to others
item
examples ● Learn the risks of downloading anything
from the Internet.
Stage Lower Secondary School Upper Secondary School
1 2 3 1 2 3
Grade
(age 13) (age 14) (age 15) (age 16) (age 17) (age 18)
Acquire fundamental and basic knowledge of information security
Objectives ● Acquire fundamental knowledge of ● Acquire basic knowledge of information security, then act
information security appropriately
Learning
● Learn how private information that is ● Learn how to protect information by coding, and utilize
item
leaked out could be used for bad ends this knowledge
examples
Implement measures to keep information secure
Objectives ● Learn to develop a proactive plan, emergency responses,
● Learn to build a fundamental security plan
backward incidence regarding information security
● Learn to prevent information leaks caused ● Learn to build proactive plan, emergency response,
by unauthorized access backward incidence regarding viruses
Learning
● Know and implement techniques to protect laptops and
item
information adequately
examples
● Implement measures against network-mediated attacks
(firewalls, etc.)
Figure 6 Information security education

5
4. Challenges

There are some challenges to improving information security education at each stage of education: 1)
at the kindergarten stage, since schools often focus most of their attention on familiarizing students
with ICT, there is a difference between each school’s efforts regarding information education, and
instruction on information ethics is not enough. 2) At the lower secondary school stage, as either of the
two subjects “Utilizing Multimedia” and “Measurement and Regulation of Computer Programs” (as
mentioned above) may be selected by each school, there is a gap in students’ information literacy
when they graduate. 3) At the teacher training stage, where teachers’ ability to teach information
education must be fostered and supported with on-going training. And 4) at all the stages of school
education, instruction regarding information ethics is not enough. In recent years, there have been
many cases of students getting into trouble in this area, like defamation and bullying on the Internet, as
well as crimes and the dissemination of illegal and/or harmful information on the Internet. However,
information security education needs to be addressed by a variety of stakeholders, including teachers,
students, parents, and communities.

REFERENCE:
Ministry of Internal Affairs and Communications, Japan (2013), “White Paper 2013, Information and
Communications in Japan”
Information-technology Promotion Agency, Japan (2013), “White Paper on IT Human Resource”
Information-technology Promotion Agency, Japan (2013), “Information Security Reader”, Jikkyo
Shuppan
Information-technology Promotion Agency, Japan (2013), “White Paper on Information Security”
Microsoft Security Intelligence Report Volume 15, January through June 2013
[Link]
McAfee Threats Report: Second Quarter 2013
[Link]
Cabinet Office (2013), “Survey results about internet usage environment of Youth in Japan”

<Akiko Kohgo>
1771

Common questions

Powered by AI

The early exposure of Japanese students to ICT tools has significant implications on their information practices. With 82.7% of students using personal computers by elementary school, these students develop familiarity with ICT from a young age . This early exposure contributes to a high internet penetration rate, particularly in the 13 to 19 age group, which reaches almost 100% . While this familiarity can foster technical skills and adaptability, it also necessitates strong foundational education in information ethics as students are more vulnerable to risks like malware and misinformation due to their high exposure levels . Consequently, this creates a pressing need for detailed and systematic information security education beginning at the elementary level to ensure that students can navigate the online environment safely and responsibly .

The information security curriculum in Japan is structured with specific objectives per educational level. At the elementary school stage, objectives focus on understanding the basics of information security, such as the importance of authentication and protecting personal passwords . Learning items include not giving passwords to others and keeping personal information secure . At the lower secondary school level, students are taught fundamental knowledge of information security, including understanding private information risks and protecting information through encryption . Finally, at the upper secondary level, students learn to implement security measures, develop emergency response plans, and employ techniques to safeguard against network attacks like firewalls .

The Japanese education system ensures consistency in information security knowledge through the 'Courses of Study,' which provide standardized curriculum guidelines upheld by the Ministry of Education, Culture, Sports, Science and Technology (MEXT). The periodic revision of these Courses, last updated in 2008 and 2009, aligns content across kindergartens to upper secondary schools, promoting uniform education standards nationwide . Information security education is integrated within core subjects as part of 'Technology and Home Economics' and the specific 'Information' subject . Additionally, model curriculums introduced by MEXT in 2007 include objectives and learning examples tailored for stages of education, ensuring systematic exposure to information security concepts across Japan . This centralized approach reduces regional discrepancies in information security education, attempting to provide all students with a baseline understanding of necessary security knowledge .

The increasing information security threat among Japanese students can be attributed to several factors. Firstly, there is a significant rise in personal device ownership among students, with 24.1% of elementary and 46.2% of lower secondary school students possessing mobile phones . This increase in device usage correlates with higher exposure to malware targeting mobile phones and smart devices . Secondly, the rise of social media platforms like Facebook and Twitter has brought additional challenges as cyber threats associated with these platforms become increasingly sophisticated and widespread . Thirdly, the growing ICT penetration rates, nearing 100% among teenagers, show that students are coming into contact with internet technologies at an earlier age, heightening their exposure to potential security risks if proper security education is not in place .

Anxiety about information security is prevalent among Japanese internet users, with 48.7% feeling at least some level of unease, particularly concerning virus infections and uncertainty over security measures . Despite this anxiety, about 90% of Japanese people plan to implement some form of information security measures, indicating a high level of awareness and intent to address these concerns . However, security countermeasures are left to individual discretion, often without comprehensive guidelines, reflecting a gap between awareness and practical implementation . This dynamic suggests that although anxiety drives a desire to adopt security measures, the lack of structured guidance may impede effective execution.

The systematic implementation of information ethics education is considered vital at all school stages in Japan due to multiple factors. As students increasingly interact with digital technologies early on, ethical guidance becomes crucial to ensure responsible use . Incidents involving online defamation, bullying, and misinformation highlight the risks of inadequate ethics training . Systematic education in this area helps instill a strong ethical framework that students can apply throughout their educational journey, minimizing harmful digital interactions . Furthermore, a structured approach addresses disparities in students' understanding of ethics, created by the uneven focus across schools, thereby forming a cohesive educational experience crucial for developing conscientious digital citizens .

The challenges in improving information security education in Japanese schools are multifaceted. In kindergarten, there's an unequal emphasis on ICT, leading to inconsistent instruction in information ethics across schools . At the lower secondary school level, the elective nature of courses like 'Utilizing Multimedia' or 'Measurement and Regulation of Computer Programs' creates disparities in students' information literacy upon graduation . Teacher training is another significant challenge, as ongoing professional development is needed to enhance teachers' ability to deliver effective information education . Additionally, across all educational stages, insufficient focus on information ethics contributes to issues such as cyberbullying and misinformation spread, requiring joint efforts from educators, parents, and community stakeholders to address .

National ICT strategies play a pivotal role in shaping information security education in Japan. The enforcement of the IT Basic Law in 2001 catalyzed the development of successive national ICT strategies such as the 'e-Japan Strategy' and 'i-Japan Strategy 2015' . These strategies aim to foster an advanced information and telecommunications network society, influencing curriculum revisions and the integration of information security within education. They guide the formulation of objectives that encompass ICT's role in daily life, ethical considerations, and the technical skills necessary for students to navigate the digital landscape safely . This strategic direction has led to comprehensive curriculum updates that align educational goals with national priorities, reinforcing the importance of producing students well-versed in information security and ethics .

The use of ICT among Japanese youth is high and exhibits several distinct patterns when compared internationally. In Japan, almost 100% of students aged 13 to 19 are internet users, while for ages 6 to 12, the penetration rate is about 70% . This is in contrast to U.S. figures, where approximately 73.06% of ages 6 to 12 and 84.83% of ages 14 to 17 use the Internet . Korea, on the other hand, shows higher ICT usage, with about 86% of children ages 3 to 9 using the Internet and 99.9% of teenagers being internet users . These comparisons highlight the early and near-universal adoption of internet technologies among Japanese youth, similar in scale to Korea but somewhat ahead of the U.S. in the younger age group .

The curriculum for information security education in Japan has undergone several significant changes. Initially highlighted in 1985, focus on computer education was solidified with ministry notices in 1988 and 1989, which led to the establishment of 'Basic information' as an optional subject in the lower secondary school curriculum . By 1998, 'Information and Computers' became a compulsory subject within 'Technology and Home Economics' based on updated guidelines . The enforcement of the IT Basic Law in 2001 further expanded the focus to align with national ICT strategies like the 'e-Japan Strategy' and 'New IT Reform Strategy' . The curriculum now includes understanding ICT roles in life, ethical use, basics of computer functions, and proactive security measures against threats .

You might also like