Information Security Compliance in Organizations: An Institutional Perspective

被引:0
|
作者
AlKalbani A. [2 ]
Deng H. [2 ]
Kam B. [2 ]
Zhang X. [1 ]
机构
[1] School of Information Management, Wuhan University, Wuhan
[2] School of Business Information Technology and Logistics, RMIT University, Melbourne
基金
中国国家自然科学基金;
关键词
empirical study; information security; information security compliance; institutional pressures; management support;
D O I
10.1515/dim-2017-0006
中图分类号
学科分类号
摘要
The increasing recognition of the importance of information security has created institutional pressures on organizations to comply with information security standards and policies for protecting their information. How such pressures influence information security compliance in organisations, however, is unclear. This paper presents an empirical study to investigate the impact of institutional pressures on information security compliance in organizations. With the use of structural equation modelling for analysing the data collected through an online survey, the study shows that coercive pressures, normative pressures, and mimetic pressures positively influence information security compliance in organizations. It reveals that the benefits of information security compliance motivate management to strengthen their commitments at information security compliance. Furthermore, the study finds out that social pressures do not have a significant impact on management commitments towards information security compliance. Theoretically this study contributes to the information security research by better understanding how institutional pressures can be used for enhancing information security compliance in organizations. Practically this study informs information security policy makers of the major institutional drivers for information security compliance. © 2017 © 2017 Ahmed AlKalbani et al.
引用
收藏
页码:104 / 114
页数:10
相关论文
共 50 条
  • [31] The Theory of Planned Behavior and Information Security Policy Compliance
    Sommestad, Teodor
    Karlzen, Henrik
    Hallberg, Jonas
    JOURNAL OF COMPUTER INFORMATION SYSTEMS, 2019, 59 (04) : 344 - 353
  • [32] Leader power and employees' information security policy compliance
    Kim, Hyungjin Lukas
    Choi, HanByeol Stella
    Han, Jinyoung
    SECURITY JOURNAL, 2019, 32 (04) : 391 - 409
  • [33] Information security culture: A management perspective
    Van Niekerk, J. F.
    Von Solms, R.
    COMPUTERS & SECURITY, 2010, 29 (04) : 476 - 486
  • [34] Information Security: End Users' Perspective
    Xu, Hongjiang
    INNOVATION AND KNOWLEDGE MANAGEMENT IN TWIN TRACK ECONOMIES: CHALLENGES & SOLUTIONS, VOLS 1-3, 2009, : 568 - 569
  • [35] Compliance With Information Security Policies in the Slovene Insurance Sector
    Bernik, Igor
    PROCEEDINGS OF THE 15TH EUROPEAN CONFERENCE ON CYBER WARFARE AND SECURITY (ECCWS 2016), 2016, : 28 - 33
  • [36] Promoting Information Security Policy Compliance - An Empirical Study
    Li, Lei
    Han, Meng
    AMCIS 2020 PROCEEDINGS, 2020,
  • [37] Leader power and employees’ information security policy compliance
    Hyungjin Lukas Kim
    HanByeol Stella Choi
    Jinyoung Han
    Security Journal, 2019, 32 : 391 - 409
  • [38] A Composite Framework for Behavioral Compliance with Information Security Policies
    Aurigemma, Salvatore
    JOURNAL OF ORGANIZATIONAL AND END USER COMPUTING, 2013, 25 (03) : 32 - 51
  • [39] Professionalizing the information security of family firms: A family essence perspective
    Marett, Kent
    Niu, Ziyi
    Barnett, Tim R.
    JOURNAL OF SMALL BUSINESS MANAGEMENT, 2020, 58 (02) : 390 - 408
  • [40] Information security knowledge sharing in organizations: Investigating the effect of behavioral information security governance and national culture
    Flores, Waldo Rocha
    Antonsen, Egil
    Ekstedt, Mathias
    COMPUTERS & SECURITY, 2014, 43 : 90 - 110