{"title":"基于理性的信念和意识对员工遵守信息安全程序的影响——以某金融公司为例[摘要]","authors":"Golan Carmi, D. Bouhnik","doi":"10.28945/4258","DOIUrl":null,"url":null,"abstract":"Aim/Purpose: This paper examines the behavior of financial firm employees with regard to information security procedures instituted within their organization. Furthermore, the effect of information security awareness and its importance within a firm is examined. \n\nBackground: The study focuses on employees' attitude toward compliance with information security policies (ISP), combined with various norms and personal abilities.\n \nMethodology: A self-reported questionnaire was distributed among 202 employees of a large financial institution. \n\nContribution: As far as we know, this is the first paper to thoroughly examine employees' awareness of information system procedures, among financial organizations in Israel and also the first to develop operative recommendations for these organizations aimed at increasing ISP compliance behavior. \n\nFindings: Our results indicate that employees' attitudes, normative beliefs and personal capabilities to comply with firm's ISP, have positive effects on the firm's ISP compliance. Also, employees' general awareness of IS, as well as awareness to ISP within the firm, positively affect employees' ISP compliance. \n\nImpact on Society: This study offers another level of understanding of employee behavior with regard to information security in organizations and comprises a significant contribution to the growing knowledge in this area. The research results form an important basis for IS policymakers, culture designers, managers, and those directly responsible for IS in the organization. \n\nFuture Research: Future work should sample employees from other financial institutions and also institutions from other fields and also should apply qualitative analysis to explore other pillars of behavioral patterns related to the subject matter.","PeriodicalId":249265,"journal":{"name":"Proceedings of the 2019 InSITE Conference","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-05-27","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"The Effect of Rational Based Beliefs and Awareness on Employee Compliance with Information Security Procedures: Case Study of a Financial Firm [Abstract]\",\"authors\":\"Golan Carmi, D. Bouhnik\",\"doi\":\"10.28945/4258\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Aim/Purpose: This paper examines the behavior of financial firm employees with regard to information security procedures instituted within their organization. Furthermore, the effect of information security awareness and its importance within a firm is examined. \\n\\nBackground: The study focuses on employees' attitude toward compliance with information security policies (ISP), combined with various norms and personal abilities.\\n \\nMethodology: A self-reported questionnaire was distributed among 202 employees of a large financial institution. \\n\\nContribution: As far as we know, this is the first paper to thoroughly examine employees' awareness of information system procedures, among financial organizations in Israel and also the first to develop operative recommendations for these organizations aimed at increasing ISP compliance behavior. \\n\\nFindings: Our results indicate that employees' attitudes, normative beliefs and personal capabilities to comply with firm's ISP, have positive effects on the firm's ISP compliance. Also, employees' general awareness of IS, as well as awareness to ISP within the firm, positively affect employees' ISP compliance. \\n\\nImpact on Society: This study offers another level of understanding of employee behavior with regard to information security in organizations and comprises a significant contribution to the growing knowledge in this area. The research results form an important basis for IS policymakers, culture designers, managers, and those directly responsible for IS in the organization. \\n\\nFuture Research: Future work should sample employees from other financial institutions and also institutions from other fields and also should apply qualitative analysis to explore other pillars of behavioral patterns related to the subject matter.\",\"PeriodicalId\":249265,\"journal\":{\"name\":\"Proceedings of the 2019 InSITE Conference\",\"volume\":\"1 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2019-05-27\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Proceedings of the 2019 InSITE Conference\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.28945/4258\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the 2019 InSITE Conference","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.28945/4258","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
The Effect of Rational Based Beliefs and Awareness on Employee Compliance with Information Security Procedures: Case Study of a Financial Firm [Abstract]
Aim/Purpose: This paper examines the behavior of financial firm employees with regard to information security procedures instituted within their organization. Furthermore, the effect of information security awareness and its importance within a firm is examined.
Background: The study focuses on employees' attitude toward compliance with information security policies (ISP), combined with various norms and personal abilities.
Methodology: A self-reported questionnaire was distributed among 202 employees of a large financial institution.
Contribution: As far as we know, this is the first paper to thoroughly examine employees' awareness of information system procedures, among financial organizations in Israel and also the first to develop operative recommendations for these organizations aimed at increasing ISP compliance behavior.
Findings: Our results indicate that employees' attitudes, normative beliefs and personal capabilities to comply with firm's ISP, have positive effects on the firm's ISP compliance. Also, employees' general awareness of IS, as well as awareness to ISP within the firm, positively affect employees' ISP compliance.
Impact on Society: This study offers another level of understanding of employee behavior with regard to information security in organizations and comprises a significant contribution to the growing knowledge in this area. The research results form an important basis for IS policymakers, culture designers, managers, and those directly responsible for IS in the organization.
Future Research: Future work should sample employees from other financial institutions and also institutions from other fields and also should apply qualitative analysis to explore other pillars of behavioral patterns related to the subject matter.