articleMIS QuarterlySep 1, 2010Closed access

Information Security Policy Compliance: An Empirical Study of Rationality-Based Beliefs and Information Security Awareness1

University of British Columbia

Indexed incrossref

Abstract

Many organizations recognize that their employees, who are often considered the weakest link in information security, can also be great assets in the effort to reduce risk related to information security. Since employees who comply with the information security rules and regulations of the organization are the key to strengthening information security, understanding compliance behavior is crucial for organizations that want to leverage their human capital. This research identifies the antecedents of employee compliance with the information security policy (ISP) of an organization. Specifically, we investigate the rationality-based factors that drive an employee to comply with requirements of the ISP with…

Citation impact

1,820
total citations
FWCI
134.14
Percentile
100%
References
109
Citations per year

Authors

3

Topics & keywords

Keywords
  • Rationality
  • Information security
  • Compliance (psychology)
  • Information security management
  • Empirical research
  • Business
  • Information systems security
  • Security policy
UN Sustainable Development Goals
  • Peace, Justice and strong institutions
No related works found for this paper.