Organizational Governance, Social Bonds and Information Security Policy Compliance: A Perspective towards Oil and Gas Employees

被引:18
|
作者
Ali, Rao Faizan [1 ]
Dominic, P. D. D. [1 ]
Ali, Kashif [2 ]
机构
[1] Univ Teknol PETRONAS, Dept Comp & Informat Sci, Bandar Seri Iskandar 32610, Perak, Malaysia
[2] COMSATS Univ Islamabad, Dept Management Sci, Islamabad 46000, Pakistan
关键词
information security policy compliance; social bond theory; organizational governance; O& G organizations; behavioral intentions; PROTECTION MOTIVATION; USER SECURITY; SYSTEMS; DETERRENCE; BEHAVIOR; AWARENESS; INSIGHTS; IMPACT; MODEL; NEUTRALIZATION;
D O I
10.3390/su12208576
中图分类号
X [环境科学、安全科学];
学科分类号
08 ; 0830 ;
摘要
Information security attacks on oil and gas (O&G) organizations have increased since the last decade. From 2015 to 2019, almost 70 percent of O&G organizations faced at least one significant security breach worldwide. Research has shown that 43 percent of security attacks on O&G organizations occur due to the non-compliant behavior of O&G employees towards information security policy. The existing literature provides multiple solutions for technical security controls of O&G organizations. However, there are very few studies available that address behavioral security controls, specifically for O&G organizations of developing countries. The purpose of this study is to provide a comprehensive framework for information security policy compliance (ISPC) for the O&G sector. A mixed-method approach is used to develop the research framework. Semi-structured interviews from O&G specialists refined the developed framework. Based on qualitative study a survey questionnaire was developed. To evaluate the research framework, structural equation modeling was applied to a sample of 254 managers/executives from 150 Malaysian O&G organizations. The obtained test results confirmed the proposed research model, according to which good social bonding among employees plays a critical role in improving ISPC. However, there was less support for the notion that all organizational governance factors significantly improve the social bonding of Malaysian O&G organizations employees. This paper contributes to the current information system (IS) literature by exploring the interrelationships among organizational governance, social bonding, and information security policy compliance (ISPC) in Malaysian O&G organizations.
引用
收藏
页码:1 / 27
页数:27
相关论文
共 40 条
  • [1] The Effect of Organizational Information Security Climate on Information Security Policy Compliance: The Mediating Effect of Social Bonding towards Healthcare Nurses
    Dong, Ke
    Ali, Rao Faizan
    Dominic, P. D. D.
    Ali, Syed Emad Azhar
    SUSTAINABILITY, 2021, 13 (05) : 1 - 25
  • [2] Employees' information security policy compliance: A norm activation perspective
    Yazdanmehr, Adel
    Wang, Jingguo
    DECISION SUPPORT SYSTEMS, 2016, 92 : 36 - 46
  • [3] The effect of perceived organizational culture on employees' information security compliance
    Karlsson, Martin
    Karlsson, Fredrik
    Astrom, Joachim
    Denk, Thomas
    INFORMATION AND COMPUTER SECURITY, 2022, 30 (03) : 382 - 401
  • [4] Ensuring employees' information security policy compliance by carrot and stick: the moderating roles of organizational commitment and gender
    Liu, Chenhui
    Liang, Huigang
    Wang, Nengmin
    Xue, Yajiong
    INFORMATION TECHNOLOGY & PEOPLE, 2022, 35 (02) : 802 - 834
  • [5] Reducing fraud in organizations through information security policy compliance: An information security controls perspective
    Brown, Dennis
    Batra, Gunjan
    Zafar, Humayun
    Saeed, Khawaja
    COMPUTERS & SECURITY, 2024, 144
  • [6] Fostering information security policies compliance with ISA-95-based framework: an empirical study of oil and gas employees
    Ali, Rao Faizan
    Dominic, P. D. D.
    Hina, Sadaf
    Naseer, Sheraz
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2024, 23 (02) : 1197 - 1213
  • [7] Investigation of information security policy violations among oil and gas employees: A security-related stress and avoidance coping perspective
    Ali, Rao Faizan
    Dominic, P. D. D.
    JOURNAL OF INFORMATION SCIENCE, 2024, 50 (01) : 254 - 272
  • [8] Motivating Information Security Policy Compliance: Insights from Perceived Organizational Formalization
    Hong, Yuxiang
    Furnell, Steven
    JOURNAL OF COMPUTER INFORMATION SYSTEMS, 2022, 62 (01) : 19 - 28
  • [9] Impact of employees' demographic characteristics on the awareness and compliance of information security policy in organizations
    Chua, Hui Na
    Wong, Siew Fan
    Low, Yeh Ching
    Chang, Younghoon
    TELEMATICS AND INFORMATICS, 2018, 35 (06) : 1770 - 1780
  • [10] Narratives and Information Security Policy Compliance: A Narrative Policy Framework Perspective
    Al Nuaim, Abdullah
    Ramirez, Ronald
    Dincelli, Ersin
    AMCIS 2020 PROCEEDINGS, 2020,