scholarly journals Information Security Policy Compliance - Eliciting Requirements for a Computerized Software to support Value-Based Compliance Analysis

2021 ◽  
pp. 102578
Author(s):  
Fredrik Karlsson ◽  
Ella Kolkowska ◽  
Johan Petersson
Author(s):  
Canchu Lin ◽  
Anand S. Kunnathur ◽  
Long Li

Past behavior research overwhelmingly focused on information security policy compliance and under explored the role of organizational context in shaping information security behaviors. To address this research gap, this study integrated two threads of literature: organizational culture, and information security behavior control, and proposed a framework that integrates mid-range theories used in empirical research, connects them to organizational culture, and predicts its role in information security behavior control. Consistent with the cultural-fit perspective, this framework shows that information security policy compliance fits hierarchical culture and the approach of promoting positive, proactive, and emerging information security behaviors fits participative culture. Contributions and practical implications of this framework, together with future research directions, are discussed.


Sign in / Sign up

Export Citation Format

Share Document