4.5 Article

The influence of organisational culture and information security culture on employee compliance behaviour

期刊

JOURNAL OF ENTERPRISE INFORMATION MANAGEMENT
卷 34, 期 4, 页码 1203-1228

出版社

EMERALD GROUP PUBLISHING LTD
DOI: 10.1108/JEIM-08-2019-0217

关键词

Organisational culture; Information security culture; Compliance behaviour

向作者/读者索取更多资源

The study reveals that organizational culture and information security culture have significant influences on employee compliance, with organizational culture having a particularly strong influence on information security culture. A control-oriented organizational culture is conducive to promoting compliance with information security policies.
Purpose Organisational culture plays an important role in influencing employee compliance with information security policies. Creating a subculture of information security can assist in facilitating compliance. The purpose of this paper is to explain the nature of the combined influence of organisational culture and information security culture on employee information security compliance. This study also aims to explain the influence of organisational culture on information security culture. Design/methodology/approach A theoretical model was developed showing the relationships between organisational culture, information security culture and employee compliance. Using an online survey, data was collected from a sample of individuals who work in organisations having information security policies. The data was analysed with Partial Least Square Structural Equation Modelling (PLS-SEM) to test the model. Findings Organisational culture and information security culture have significant, yet similar influences on employee compliance. In addition, organisational culture has a strong causal influence on information security culture. Practical implications Control-oriented organisational cultures are conducive to information security compliant behaviour. For an information security subculture to be effectively embedded in an organisation's culture, the dominant organisational culture would have to be considered first. Originality/value This research provides empirical evidence that information security subculture is influenced by organisational culture. Compliance is best explained by their joint influence.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

4.5
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据