【24h】

Improving Organisational Information Security Management: The Impact of Training and Awareness

机译:改善组织信息安全管理:培训和意识的影响

获取原文
获取原文并翻译 | 示例

摘要

Security breaches that affect personal data and organisational systems have become increasingly significant in the global technology (IT) industry. There is scope for research on the factors that influence user behaviour and attitudes toward this aspect of information security and their impact on organisation's network integrity. This research aims to study the critical success factors (CSF) for employees in order to comply with the organisational information security policy with a view to mitigating security breaches. Information security can be managed through three separate mechanisms: organisational factors, behavioural factors and training. Each of these elements impact differently on information security and comprehensive solutions include combinations of all three. The findings provide empirically evaluated information regarding the obstacles and the effective factors in employees' compliance with the implementation of the information security policy. The identified categories of factors are followed differently by employees working in Health, Business and Education. Questionnaire analysis as part of this study suggests that employees in the health sector comply the most in adhering with information security policy as compared to other sectors. One of the reasons for this is that health sector employees have better awareness, robust communication and effective training programmes with reinforcement and satisfaction. Moreover, employees in the health sector believe in the norms of security policies and have a positive attitude, as they recognise the significance of security policies, unlike the business and education sectors.
机译:影响个人数据和组织系统的安全漏洞在全球技术(IT)行业中已变得越来越重要。对于影响用户对信息安全方面的行为和态度及其对组织网络完整性的影响的因素,还有很多研究空间。这项研究旨在研究员工的关键成功因素(CSF),以便遵守组织的信息安全策略,以减轻安全漏洞。信息安全可以通过三种独立的机制进行管理:组织因素,行为因素和培训。这些要素对信息安全的影响各不相同,全面的解决方案包括这三种要素的组合。调查结果提供了有关员工遵守信息安全政策的障碍和有效因素的经验评估信息。在健康,商业和教育领域工作的员工对确定的因素类别的遵循方式有所不同。作为这项研究的一部分,调查表分析表明,与其他部门相比,卫生部门的员工在遵守信息安全政策方面最为遵守。原因之一是卫生部门的员工具有增强和满意度的更好的意识,健全的沟通和有效的培训计划。此外,与商业和教育部门不同,卫生部门的雇员相信安全政策的规范并持积极态度,因为他们认识到安全政策的重要性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号