{"title":"信息安全策略遵从性的需求:高等教育机构的视角","authors":"Sadaf Hina, D. D. Dominic","doi":"10.1109/ICRIIS.2017.8002439","DOIUrl":null,"url":null,"abstract":"Organizations profoundly rely on contemporary information systems as they store essential business and resources data. Security of these information systems is critically handled by applying both technical and behavioral controls. However, security culture in certain organizations such as Higher Education Institutions (HEI) is questionable due to the lax attitude of employees towards the institutional resources. This research intends to examine the effect of institutional governance (IG) factors security awareness programs, establishment of security policies and periodic monitoring in enhancing the protection motivation among employees. It is believed that employees motivated, through various sources of information, towards the protection of resources intend to comply with organizational Information Security Policies (ISP) documented to disseminate the roles and responsibilities of employees. The two relevant theories i.e. Protection Motivation Theory (PMT) and Theory of Planned Behavior (TPB) are integrated for this research. The effect of IG and negative experience, as external sources of information, is investigated on the integrated theories. Relevant hypotheses are formulated in the proposed hybrid research model. To pilot test the survey questionnaire, data collection was done among the employees within the HEI of Malaysia. Results were derived using IBM SPSS 23. Pilot study shows reliable measurement scales, suitable for final data collection and analysis to validate the research model.","PeriodicalId":384130,"journal":{"name":"2017 International Conference on Research and Innovation in Information Systems (ICRIIS)","volume":"6 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2017-07-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"8","resultStr":"{\"title\":\"Need for information security policies compliance: A perspective in Higher Education Institutions\",\"authors\":\"Sadaf Hina, D. D. Dominic\",\"doi\":\"10.1109/ICRIIS.2017.8002439\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Organizations profoundly rely on contemporary information systems as they store essential business and resources data. Security of these information systems is critically handled by applying both technical and behavioral controls. However, security culture in certain organizations such as Higher Education Institutions (HEI) is questionable due to the lax attitude of employees towards the institutional resources. This research intends to examine the effect of institutional governance (IG) factors security awareness programs, establishment of security policies and periodic monitoring in enhancing the protection motivation among employees. It is believed that employees motivated, through various sources of information, towards the protection of resources intend to comply with organizational Information Security Policies (ISP) documented to disseminate the roles and responsibilities of employees. The two relevant theories i.e. Protection Motivation Theory (PMT) and Theory of Planned Behavior (TPB) are integrated for this research. The effect of IG and negative experience, as external sources of information, is investigated on the integrated theories. Relevant hypotheses are formulated in the proposed hybrid research model. To pilot test the survey questionnaire, data collection was done among the employees within the HEI of Malaysia. Results were derived using IBM SPSS 23. Pilot study shows reliable measurement scales, suitable for final data collection and analysis to validate the research model.\",\"PeriodicalId\":384130,\"journal\":{\"name\":\"2017 International Conference on Research and Innovation in Information Systems (ICRIIS)\",\"volume\":\"6 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2017-07-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"8\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2017 International Conference on Research and Innovation in Information Systems (ICRIIS)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICRIIS.2017.8002439\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2017 International Conference on Research and Innovation in Information Systems (ICRIIS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICRIIS.2017.8002439","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Need for information security policies compliance: A perspective in Higher Education Institutions
Organizations profoundly rely on contemporary information systems as they store essential business and resources data. Security of these information systems is critically handled by applying both technical and behavioral controls. However, security culture in certain organizations such as Higher Education Institutions (HEI) is questionable due to the lax attitude of employees towards the institutional resources. This research intends to examine the effect of institutional governance (IG) factors security awareness programs, establishment of security policies and periodic monitoring in enhancing the protection motivation among employees. It is believed that employees motivated, through various sources of information, towards the protection of resources intend to comply with organizational Information Security Policies (ISP) documented to disseminate the roles and responsibilities of employees. The two relevant theories i.e. Protection Motivation Theory (PMT) and Theory of Planned Behavior (TPB) are integrated for this research. The effect of IG and negative experience, as external sources of information, is investigated on the integrated theories. Relevant hypotheses are formulated in the proposed hybrid research model. To pilot test the survey questionnaire, data collection was done among the employees within the HEI of Malaysia. Results were derived using IBM SPSS 23. Pilot study shows reliable measurement scales, suitable for final data collection and analysis to validate the research model.