首页> 外文会议>World multi-conference on systemics, cybernetics and informatics >Hacking a Bridge: An Exploratory Study of Compliance-based Information Security Management in Banking Organization
【24h】

Hacking a Bridge: An Exploratory Study of Compliance-based Information Security Management in Banking Organization

机译:破解桥梁:银行组织中基于合规性的信息安全管理探索性研究

获取原文

摘要

This work is approached through the lens of compliant security by drawing on the concepts of neutralization theory, a prominenl postulation in the criminology domain and the 'big five' personality construct. This research is conducted based on a case study of ISO/IEC27001 Standard certified banks, to empirically evaluate the link between cyber security protocols violation and how employees rationalise security behaviour. We propose that compliance-based security has the propensity for a heightened sense of false security and vulnerability perception, by showing that systemic security violation in compliance-base security model can be explained by the level of linkages from the personality construct and the neutralization theory. Based on the survey responses from banking organization employees and the application of partial least square structural equation modelling (PLS-SME) analysis to test the hypothesis and validate survey samples, we can draw a strong inference to support the importance of individual security scenario effect as a vital complementary element of compliance-based security. We then suggest how information security can be addressed in that context.
机译:通过遵循中和理论的概念,犯罪学领域的突出假设和“五大”人格构架,通过合规安全性的视角来进行这项工作。这项研究基于ISO / IEC27001标准认证银行的案例研究,以经验评估网络安全协议违规与员工如何合理化安全行为之间的联系。我们认为,基于合规性的安全性倾向于增强错误安全性和脆弱性感知的意识,这表明基于合规性的安全性模型中的系统性安全性违规行为可以由人格构造和中和理论之间的联系程度来解释。基于银行组织员工的调查答复,并运用偏最小二乘结构方程模型(PLS-SME)分析来检验假设并验证调查样本,我们可以得出一个强有力的推论来支持个人安全情景效应的重要性,因为基于合规性的安全性的重要补充元素。然后,我们建议如何在这种情况下解决信息安全问题。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号