首页> 外文期刊>Information and Knowledge Management >Exploring the Factors That Contribute Towards Information Security Policy Compliance Culture
【24h】

Exploring the Factors That Contribute Towards Information Security Policy Compliance Culture

机译:探索为信息安全政策合规文化提供贡献的因素

获取原文
       

摘要

There is over-reliance on information systems to run virtually all aspects of modern institutions. This has put more burden on information security managers to come up with more robust and efficient ways to enhance information security policy compliance. Therefore, despite existing efforts in the area of information security management, there remains a critical need for more research to be done. The existing research has also concentrated on hypothesis testing rather than a qualitative approach. So, there is an existential methodology gap that can give another alternative result that still needs to be covered. That is why we embarked on exploring the factors that influence information security compliance in organizations. The research was conducted in two universities with a diverse population. The research design was exploratory, encompassing qualitative in-depth case interviews with grounded theory as the analysis strategy. A total of 20 interviews were conducted and each analysis was done after every few batches of interviews in line with grounded theory principles. A theoretical model was generated and discussed. Implications for the research were also discussed and recommendations made. The study found individual factors, organizational factors, and external influence to be important factors in strategizing how to increase compliance with policies. The results also showed that practitioners need to factor in a combination of elements in their strategies in order to enhance compliance with information security policies.
机译:有没有依赖信息系统,几乎运行现代机构的所有方面。这对信息安全管理人员提出了更强大和有效的方式来提高信息安全策略合规性的更多负担。因此,尽管在信息安全管理领域存在努力,但仍然需要进行更多的研究。现有的研究也集中在假设检测上而不是定性方法。因此,存在存在的方法差距,可以给出另一种替代结果,仍然需要涵盖。这就是为什么我们开始探索影响信息安全合规性的因素。该研究是在两所拥有不同人口的大学进行的。研究设计是探索性的,包括与接地理论进行定性的深入案例面试作为分析策略。进行了共有20份访谈,每次批量采访后,每次分析都符合基础理论原则。生成并讨论了理论模型。还讨论了对研究的影响并提出建议。该研究发现了个性化因素,组织因素和外部影响,成为战略如何增加政策遵守的重要因素。结果还表明,从业者需要在他们的策略中对元素的组合来加强遵守信息安全政策。

著录项

获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号