A typology of employees' information security behaviour
Autor: | Mariati Norhashim, Liew Tze Hui, Ong Thian Song, Zauwiyah Ahmad |
---|---|
Rok vydání: | 2016 |
Předmět: |
Typology
Knowledge management ComputingMilieux_THECOMPUTINGPROFESSION Certified Information Security Manager business.industry Standard of Good Practice 020206 networking & telecommunications 02 engineering and technology Information security Security information and event management Information security audit Information security management Information security standards 020204 information systems 0202 electrical engineering electronic engineering information engineering Psychology business |
Zdroj: | 2016 4th International Conference on Information and Communication Technology (ICoICT). |
Popis: | This study maps the typology of employee's information security behavior and links it to their knowledge of information security. A survey of the knowledge and practices of employees in the telecommunication sector was conducted and a typology clustering the employees into four groups based on the knowledge-behavior spectrum was developed. Each group was analyzed by age, gender, education level, and job hierarchy. There was an implicit assumption that awareness programs would improve information security behaviors. The findings of this study debunk that assumption. The typology offered an insight into a tailored intervention program. The instrument could also be used as an evaluation tool to evaluate the effectiveness of intervention or programs later. |
Databáze: | OpenAIRE |
Externí odkaz: |