Understanding Information Security Culture: A Survey in Small and Medium Sized Enterprises

被引:17
作者
Lopes, Isabel [1 ]
Oliveira, Pedro [1 ]
机构
[1] IPB, Sch Technol & Management, Braganca, Portugal
来源
NEW PERSPECTIVES IN INFORMATION SYSTEMS AND TECHNOLOGIES, VOL 1 | 2014年 / 275卷
关键词
Security Culture; Information Security; Small and Medium Sized Enterprises; Information Security Culture; MANAGEMENT;
D O I
10.1007/978-3-319-05951-8_27
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Information security is a relevant fact for current organizations. There are factors inextricably linked to this issue, and one cannot talk about information security in an organization without addressing and understanding the information security culture of that institution. Maximizing the organizational culture within an organization will enable the safeguard of information security. For that, we need to understand which the inhibiting and the enabling factors are. This paper contributes to point out those factors by presenting the results of a survey concerning information security culture in small and medium sized enterprises (SMEs). We discuss the results in the light of related literature, and we identify future works aiming to enhance information security within organizations.
引用
收藏
页码:277 / 286
页数:10
相关论文
共 18 条
[1]  
[Anonymous], 27002 ISO IEC
[2]   An information security governance framework [J].
Da Veiga, A. ;
Eloff, J. H. P. .
INFORMATION SYSTEMS MANAGEMENT, 2007, 24 (04) :361-372
[3]  
DaVeiga A., 2008, Cultivating and assessing information security culture
[4]  
Dhillon G., 1999, Information Management & Computer Security, V7, P171, DOI 10.1108/09685229910292664
[5]   Information system security management in the new millennium [J].
Dhillon, G ;
Backhouse, J .
COMMUNICATIONS OF THE ACM, 2000, 43 (07) :125-128
[6]  
Dimopoulos V., 2004, P 2 AUSTR INF SEC MA
[7]   Information security management: A hierarchical framework for various approaches [J].
Eloff, MM ;
von Solms, SH .
COMPUTERS & SECURITY, 2000, 19 (03) :243-256
[8]  
Furnell S.M., 2000, P 1 AUSTR INF SEC MA
[9]   The nature of safety culture: a review of theory and research [J].
Guldenmund, FW .
SAFETY SCIENCE, 2000, 34 (1-3) :215-257
[10]   Culture's confusions [J].
Hale, AR .
SAFETY SCIENCE, 2000, 34 (1-3) :1-14