Deriving the Relationship between Organizational Culture and Information Security Culture

被引:0
作者
Hassan, Noor Hafizah [1 ]
Ismail, Zuraini [1 ]
机构
[1] Univ Technol Malaysia, Kuala Lumpur, Malaysia
来源
VISION 2020: INNOVATION, DEVELOPMENT SUSTAINABILITY, AND ECONOMIC GROWTH, VOLS 1-3 | 2013年
关键词
Information Security Culture; Organizational Culture; Healthcare Informatics; FRAMEWORK; HEALTH;
D O I
暂无
中图分类号
F [经济];
学科分类号
02 ;
摘要
Despite the widely recognized importance of information security as vital assets in organization, there is a little understanding of how organizations actually promote information security culture amongst the employee in particular environment. The diversity of problem facing the public-service organization is paramount than before as competitive growth of services and rapid changes in technology. As information technology is widely adopted, the organization must undergo boundless transformational to fulfill the nations demand yet provide a good information security management system to ensure their business continuity. This research looks into the social aspects of information security. It reviews the relationship between organizational culture and information security culture. It further identifies key factors influencing information security culture in the organization. A review based on multiple definitions and descriptions of security culture from previous study were conducted. This study shows the relationship between organizational culture and information security culture. This relationship becomes the guidelines for the organization to understand the main factors for their employee to perform security practice. This in-progress study will further use to develop a conceptual model that suggests organization in promoting information security that will be further evaluated with government-supported healthcare organization
引用
收藏
页码:926 / 932
页数:7
相关论文
共 28 条
[1]  
[Anonymous], 2011, 2011 Information Security for South Africa
[2]  
[Anonymous], 2009, PROC 7 AUSTRAL INF S
[3]  
[Anonymous], PACIS
[4]   Information Security management: A human challenge? [J].
Department of Informatics and Sensors, Cranfield University, Swindon, SN6 8LA, United Kingdom .
Inf Secur Tech Rep, 2008, 4 (195-201) :195-201
[5]   A framework and assessment instrument for information security culture [J].
Da Veiga, A. ;
Eloff, J. H. P. .
COMPUTERS & SECURITY, 2010, 29 (02) :196-207
[6]   A framework for linking culture and improvement initiatives in organizations [J].
Detert, JR ;
Schroeder, RG ;
Mauriel, JJ .
ACADEMY OF MANAGEMENT REVIEW, 2000, 25 (04) :850-863
[7]  
Garg Vaibhav, 2011, J Diabetes Sci Technol, V5, P768
[8]   Information security: Management's effect on culture and policy [J].
Knapp, Kenneth J. ;
Marshall, Thomas E ;
Rainer Jr., R. Kelly ;
Ford, F. Nelson .
Information Management and Computer Security, 2006, 14 (01) :24-36
[9]   Human and organizational factors in computer and information security: Pathways to vulnerabilities [J].
Kraemer, Sara ;
Carayon, Pascale ;
Clem, John .
COMPUTERS & SECURITY, 2009, 28 (07) :509-520
[10]  
Lim J. S., 2010, PACIS 2010