Workarounds and trade-offs in information security-An exploratory study

被引:16
|
作者
Woltjer R. [1 ]
机构
[1] Swedish Defence Research Agency (FOI), Linköping
关键词
Expertise; Information security; Information security demands; Policy; Trade-offs; Workarounds;
D O I
10.1108/ICS-02-2016-0017
中图分类号
学科分类号
摘要
Purpose-The purpose of this paper is to investigate relationships between workarounds (solutions to handling trade-offs between competing or misaligned goals and gaps in policies and procedures), perceived trade-offs, information security (IS) policy compliance, IS expertise/knowledge and IS demands. Design/methodology/approach-The research purpose is addressed using survey data from a nationwide sample of Swedish white-collar workers (N = 156). Findings-Responses reinforce the notion that workarounds partly are something different from IS policy compliance and that workarounds-as-improvisations are used more frequently by employees that see more conflicts between IS and other goals (r = 0.351), and have more IS expertise/knowledge (r = 0.257). Workarounds-as-non-compliance are also used more frequently when IS trade-offs are perceived (r = 0.536). These trade-offs are perceived more by people working in organizations that handle information with high security demands (r = 0.265) and those who perform tasks with high IS demands (r = 0.178). Originality/value-IS policies are an important part of IS governance. They describe the procedures that are supposed to provide IS. Researchers have primarily investigated how employees' compliance with IS policies can be predicted and explained. There has been an increased interest in how tradeoffs and conflicts between following policies and other goals lead employees to make workarounds. Workarounds may leave management unaware of how work actually is done within the organization and may besides getting work done lead to new vulnerabilities. This study furthers the understanding of workarounds and trade-offs, which should be subject to further research. © Emerald Publishing Limited.
引用
收藏
页码:402 / 420
页数:18
相关论文
共 50 条
  • [31] Trade-Offs Between Forest Protection and Wood Supply in Europe
    Verkerk, Pieter Johannes
    Zanchi, Giuliana
    Lindner, Marcus
    ENVIRONMENTAL MANAGEMENT, 2014, 53 (06) : 1085 - 1094
  • [32] Costs and trade-offs associated with induced resistance
    Walters, Dale
    Heil, Martin
    PHYSIOLOGICAL AND MOLECULAR PLANT PATHOLOGY, 2007, 71 (1-3) : 3 - 17
  • [33] Makespan Trade-Offs for Visiting Triangle Edges
    Georgiou, Konstantinos
    Kundu, Somnath
    Pralat, Pawel
    COMBINATORIAL ALGORITHMS, IWOCA 2021, 2021, 12757 : 340 - 355
  • [34] An Ontological Approach to Predict Trade-Offs between Security and Usability for Mobile Application Requirements Engineering
    Roh, Woori
    Lee, Seok-Won
    2017 IEEE 25TH INTERNATIONAL REQUIREMENTS ENGINEERING CONFERENCE WORKSHOPS (REW), 2017, : 69 - 75
  • [35] Aggregate SDGs to cover trade-offs and prioritization
    Schaubroeck, Thomas
    NATURE, 2020, 584 (7821) : 344 - 344
  • [36] Educational ethics and the DESD Considering trade-offs
    Schlottmann, Christopher
    THEORY AND RESEARCH IN EDUCATION, 2008, 6 (02) : 207 - 219
  • [37] Trade-offs in the spatial model of resource allocation
    Campbell, DE
    Kelly, JS
    JOURNAL OF PUBLIC ECONOMICS, 1996, 60 (01) : 1 - 19
  • [38] Hormonal pleiotropy and the evolution of allocation trade-offs
    Bourg, Salome
    Jacob, Laurent
    Menu, Frederic
    Rajon, Etienne
    EVOLUTION, 2019, 73 (04) : 661 - 674
  • [39] Avoiding sustainability trade-offs in environmental assessment
    Gibson, Robert B.
    IMPACT ASSESSMENT AND PROJECT APPRAISAL, 2013, 31 (01) : 2 - 12
  • [40] Trade-offs in integer data envelopment analysis
    Alirezaee, Mohammadreza
    Sani, Mohammadreza Rafiee
    INTERNATIONAL TRANSACTIONS IN OPERATIONAL RESEARCH, 2018, 25 (06) : 1997 - 2007