首页> 外文学位 >Examining the Impact of Non-Technical Security Management Factors on Information Security Management in Health Informatics.
【24h】

Examining the Impact of Non-Technical Security Management Factors on Information Security Management in Health Informatics.

机译:研究非技术安全管理因素对健康信息学中信息安全管理的影响。

获取原文
获取原文并翻译 | 示例

摘要

Complexity of information security has become a major issue for organizations due to incessant threats to information assets. Healthcare organizations are particularly concerned with security owing to the inherent vulnerability of sensitive information assets in health informatics. While the non-technical security management elements have been at the center of information security activities for many years, often only the technical management components (firewall, anti-virus, etc.) have been the main area of interest for many practitioners. The problem addressed in this quantitative study was the dearth of non-technical security management perspectives in the management of information security in health informatics. Two prominent bodies of research, the theory of reasoned action and general deterrents theory were integrated to formulate the study framework. This quantitative, non-experimental study examined the impact of nontechnical security management factors including organizational culture, security policy and human actions on information security management. The survey instrument was hand delivered to healthcare practitioners at Korle-Bu Teaching Hospital, as well as to technocrats at the Ministry of Health in Ghana. A total of usable 177 out of two hundred surveys were returned. Survey data were analyzed using correlation and regression analyses. The results indicated a significant positive relationship between information security management and security policy (r=.612, p<.001), organizational culture (r=.751, p<.001), and human behavior actions (r=.646, p<.001). Findings from this study confirm that when non-technical factors are better appreciated and thus incorporated into organizations' overall security strategy at the onset, effective management of information security in (healthcare) organizations is ensured. Given the seriousness of the threats to the security environment today and the lack of effective control mechanisms in place, findings from this study could offer important and potentially new perspective on information security management issues; the growing recognition of the influences of non-technical factors for developing comprehensive information security management, particularly health organizations' security. A follow-up study on non-technical security management factors' effect on information security management would reapply the present study's instrument, and compare the combined scores between this and future studies.
机译:由于对信息资产的持续威胁,信息安全的复杂性已成为组织的主要问题。由于敏感信息资产在健康信息学中固有的脆弱性,医疗保健组织特别关注安全性。尽管非技术安全管理元素已经成为信息安全活动的中心多年,但通常只有技术管理组件(防火墙,防病毒等)才成为许多从业人员关注的主要领域。这项定量研究中解决的问题是卫生信息学中信息安全管理中缺乏非技术安全管理观点。结合了两个重要的研究机构,即理性行为理论和一般威慑理论,以形成研究框架。这项定量的非实验性研究研究了非技术安全管理因素(包括组织文化,安全策略和人为措施)对信息安全管理的影响。该调查工具是手动交付给Korle-Bu教学医院的医疗保健从业人员以及加纳卫生部的技术专家的。在200个调查中,总共返回了177个可用的调查。使用相关和回归分析对调查数据进行了分析。结果表明,信息安全管理与安全策略(r = .612,p <.001),组织文化(r = .751,p <.001)和人类行为行为(r = .646, p <.001)。这项研究的结果证实,当人们更好地理解非技术因素并将其纳入组织的整体安全策略时,就可以确保(医疗)组织对信息安全的有效管理。鉴于当今对安全环境的威胁的严重性以及缺乏有效的控制机制,这项研究的结果可能会为信息安全管理问题提供重要的且可能是新的观点;非技术因素对发展全面的信息安全管理(尤其是卫生组织的安全性)的影响的日益增长的认识。关于非技术安全管理因素对信息安全管理的影响的后续研究将重新应用本研究的工具,并比较本研究与未来研究的综合得分。

著录项

  • 作者

    Imam, Abbas H.;

  • 作者单位

    Northcentral University.;

  • 授予单位 Northcentral University.;
  • 学科 Business Administration Management.;Health Sciences Health Care Management.;Information Technology.
  • 学位 Ph.D.
  • 年度 2013
  • 页码 193 p.
  • 总页数 193
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

  • 入库时间 2022-08-17 11:41:33

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号