首页> 外文OA文献 >Prevention is better than cure! Designing information security awareness programs to overcome users' non-compliance with information security policies in banks
【2h】

Prevention is better than cure! Designing information security awareness programs to overcome users' non-compliance with information security policies in banks

机译:预防胜于治疗!设计信息安全意识计划,以克服用户对银行信息安全政策的不遵守

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

In organizations, users' compliance with information security policies (ISP) is crucial for minimizing information security (IS) incidents. To improve users' compliance, IS managers have implemented IS awareness (ISA) programs, which are systematically planned interventions to continuously transport security information to a target audience. The underlying research analyzes IS managers' efforts to design effective ISA programs by comparing current design recommendations suggested by scientific literature with actual design practices of ISA programs in three banks. Moreover, this study addresses how users perceive ISA programs and related implications for compliant IS behavior. Empirically, we utilize a multiple case design to investigate three banks from Central and Eastern Europe. In total, 33 semi-structured interviews with IS managers and users were conducted and internal materials of ISA programs such as intranet messages and posters were also considered. The paper contributes to IS compliance research by offering a comparative and holistic view on ISA program design practices. Moreover, we identified influences on users' perceptions centering on IS risks, responsibilities, ISP importance and knowledge, and neutralization behaviors. Finally, the study raises propositions regarding the relationship of ISA program designs and factors, which are likely to influence users' ISP compliance.
机译:在组织中,用户遵守信息安全策略(ISP)对于最大程度地减少信息安全(IS)事件至关重要。为了提高用户的合规性,IS经理实施了IS意识(ISA)程序,该程序是系统计划的干预措施,用于将安全信息不断传输给目标受众。基础研究通过将科学文献提出的当前设计建议与三家银行ISA计划的实际设计实践进行比较,分析了IS经理设计有效ISA计划的努力。此外,本研究还介绍了用户如何看待ISA程序以及对符合IS行为的相关含义。根据经验,我们采用多案例设计来调查中欧和东欧的三家银行。总共进行了33次与IS管理员和用户的半结构化访谈,还考虑了ISA程序的内部材料,例如内部网消息和张贴者。本文通过提供有关ISA程序设计实践的比较性和整体性观点,为IS遵从性研究做出了贡献。此外,我们以IS风险,责任,ISP的重要性和知识以及中和行为为中心,确定了对用户感知的影响。最后,该研究提出了有关ISA程序设计和因素之间关系的主张,这很可能会影响用户的ISP遵从性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号