Security is Local: The Influence of the Immediate Workgroup on Information Security

IF 7 3区 管理学 Q1 COMPUTER SCIENCE, INFORMATION SYSTEMS Journal of the Association for Information Systems Pub Date : 2023-01-01 DOI:10.17705/1jais.00812
Dawei (David) Wang, Alexandra Durcikova, A. Dennis
{"title":"Security is Local: The Influence of the Immediate Workgroup on Information Security","authors":"Dawei (David) Wang, Alexandra Durcikova, A. Dennis","doi":"10.17705/1jais.00812","DOIUrl":null,"url":null,"abstract":"Information security is a multilevel phenomenon with employee security decisions being influenced by macrolevel factors (e.g., organizational policies), mesolevel factors (e.g., one’s immediate workgroup—IW), and microlevel factors (e.g., individual personalities). We argue that an employee’s local IW (i.e., immediate supervisor and coworkers) has a strong effect on security. This paper focuses on the effects of these mesolevel factors in the presence of macro- and microlevel factors. Drawing on the social structure and social learning framework as well as workgroup research, we hypothesize that the security behavior of an employee’s IW supervisor and coworkers moderated by the nature of these relationships influences information security decisions. Our research, based on a sample of 217 full-time employees, reveals that the IW significantly affects security decisions, over and above the micro- and macrolevel factors. These effects are moderated by the nature of the relationship between employees and their IW supervisor (leader-member exchange) and coworkers (team-member exchange). A post hoc analysis shows that the mesolevel factors alone had the same explanatory power as the micro- and macrolevels combined. Our research suggests that future theory and research should include the IW and that organizations should share security responsibilities with line managers and help them understand their substantial impact on information security. Security training programs should ask employees about the behaviors of their IW supervisor and coworkers and, where needed, deliver anti-neutralization training to mitigate the effects of the IW’s noncompliance behaviors.","PeriodicalId":51101,"journal":{"name":"Journal of the Association for Information Systems","volume":"60 1","pages":"4"},"PeriodicalIF":7.0000,"publicationDate":"2023-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Journal of the Association for Information Systems","FirstCategoryId":"91","ListUrlMain":"https://doi.org/10.17705/1jais.00812","RegionNum":3,"RegionCategory":"管理学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"COMPUTER SCIENCE, INFORMATION SYSTEMS","Score":null,"Total":0}
引用次数: 1

Abstract

Information security is a multilevel phenomenon with employee security decisions being influenced by macrolevel factors (e.g., organizational policies), mesolevel factors (e.g., one’s immediate workgroup—IW), and microlevel factors (e.g., individual personalities). We argue that an employee’s local IW (i.e., immediate supervisor and coworkers) has a strong effect on security. This paper focuses on the effects of these mesolevel factors in the presence of macro- and microlevel factors. Drawing on the social structure and social learning framework as well as workgroup research, we hypothesize that the security behavior of an employee’s IW supervisor and coworkers moderated by the nature of these relationships influences information security decisions. Our research, based on a sample of 217 full-time employees, reveals that the IW significantly affects security decisions, over and above the micro- and macrolevel factors. These effects are moderated by the nature of the relationship between employees and their IW supervisor (leader-member exchange) and coworkers (team-member exchange). A post hoc analysis shows that the mesolevel factors alone had the same explanatory power as the micro- and macrolevels combined. Our research suggests that future theory and research should include the IW and that organizations should share security responsibilities with line managers and help them understand their substantial impact on information security. Security training programs should ask employees about the behaviors of their IW supervisor and coworkers and, where needed, deliver anti-neutralization training to mitigate the effects of the IW’s noncompliance behaviors.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
安全是局部的:即时工作组对信息安全的影响
信息安全是一个多层次的现象,员工的安全决策受到宏观因素(例如,组织政策)、中观因素(例如,一个人的直接工作组)和微观因素(例如,个人个性)的影响。我们认为员工的本地IW(即直接主管和同事)对安全性有很强的影响。本文着重讨论了这些中观因素在宏观和微观因素共同作用下的影响。基于社会结构和社会学习框架以及工作组研究,我们假设员工的信息安全主管和同事的安全行为受到这些关系性质的调节,从而影响信息安全决策。我们的研究基于217名全职员工的样本,揭示了信息库对安全决策的显著影响,超出了微观和宏观层面的因素。这些影响被员工与他们的IW主管(领导-成员交换)和同事(团队-成员交换)之间关系的性质所调节。事后分析表明,中观因素单独具有与微观和宏观水平相结合的相同解释力。我们的研究表明,未来的理论和研究应该包括IW,组织应该与直线经理分享安全责任,并帮助他们了解他们对信息安全的重大影响。安全培训计划应该询问员工他们的IW主管和同事的行为,并在必要时提供反中和培训,以减轻IW不合规行为的影响。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
Journal of the Association for Information Systems
Journal of the Association for Information Systems 工程技术-计算机:信息系统
CiteScore
11.20
自引率
5.20%
发文量
33
审稿时长
>12 weeks
期刊介绍: The Journal of the Association for Information Systems (JAIS), the flagship journal of the Association for Information Systems, publishes the highest quality scholarship in the field of information systems. It is inclusive in topics, level and unit of analysis, theory, method and philosophical and research approach, reflecting all aspects of Information Systems globally. The Journal promotes innovative, interesting and rigorously developed conceptual and empirical contributions and encourages theory based multi- or inter-disciplinary research.
期刊最新文献
"My Precious!": A Values-Affordances Perspective on the Adoption of Bitcoin A Warning Approach to Mitigating Bandwagon Bias in Online Ratings: Theoretical Analysis and Experimental Investigations Social Inclusion: The Use of Social Media and the Impact on First-Generation College Students Positively Fearful: Activating the Individual's HERO Within to Explain Volitional Security Technology Adoption The Effectiveness of Highlighting Different Communication Orientations in Promoting Mobile Communication Technology at Work vs. at Home: Evidence from a Field Experiment
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1