Information Security Policy Compliance: An Empirical Study of Rationality-Based Beliefs and Information Security Awareness1
University of British Columbia
Abstract
Many organizations recognize that their employees, who are often considered the weakest link in information security, can also be great assets in the effort to reduce risk related to information security. Since employees who comply with the information security rules and regulations of the organization are the key to strengthening information security, understanding compliance behavior is crucial for organizations that want to leverage their human capital. This research identifies the antecedents of employee compliance with the information security policy (ISP) of an organization. Specifically, we investigate the rationality-based factors that drive an employee to comply with requirements of the ISP with…
Citation impact
- FWCI
- 134.14
- Percentile
- 100%
- References
- 109
Authors
3- BBBurcu BulgurcuCorresponding
University of British Columbia
- HCHasan Cavusoglu
University of British Columbia
- IBIzak Benbasat
University of British Columbia
Topics & keywords
- Rationality
- Information security
- Compliance (psychology)
- Information security management
- Empirical research
- Business
- Information systems security
- Security policy
- Peace, Justice and strong institutions