4.5 Review

A review and analysis of deterrence theory in the IS security literature: making sense of the disparate findings

期刊

EUROPEAN JOURNAL OF INFORMATION SYSTEMS
卷 20, 期 6, 页码 643-658

出版社

TAYLOR & FRANCIS LTD
DOI: 10.1057/ejis.2011.23

关键词

deterrence theory; rational choice theory; IS security compliance; IS security policy violations; IS misuse; computer abuse

向作者/读者索取更多资源

Deterrence theory is one of the most widely applied theories in information systems (IS) security research, particularly within behavioral IS security studies. Based on the rational choice view of human behavior, the theory predicts that illicit behavior can be controlled by the threat of sanctions that are certain, severe, and swift. IS scholars have used deterrence theory to predict user behaviors that are either supportive or disruptive of IS security, and other IS security-related outcome variables. A review of this literature suggests an uneven and often contradictory picture regarding the influence of sanctions and deterrence theory in general in the IS security context. In this paper, we set out to make sense of the discrepant findings in the IS deterrence literature by drawing upon the more mature body of deterrence literature that spans multiple disciplines. In doing so, we speculate that a set of contingency variables and methodological and theoretical issues can shed light on the inconsistent findings and inform future research in this area. The review and analysis presented in this paper facilitates a deeper understanding of deterrence theory in the IS security domain, which can assist in cumulative theory-building efforts and advance security management strategies rooted in deterrence principles. European Journal of Information Systems (2011) 20, 643-658. doi:10.1057/ejis.2011.23; published online 14 June 2011

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

4.5
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据