A study of human factors toward compliance with organization's information security policy

被引:0
|
作者
Arif, Muhammad [1 ]
Badila, Madalina [2 ]
Warden, Julia M. [3 ]
Rehman, Altaf Ur [4 ]
机构
[1] Inst Business Management, Hose D-46,NHS Phase-3,PNS Karsaz, Karachi 75350, Pakistan
[2] Lucian Blaga Univ, Def Studies Dept, Sibiu, Romania
[3] Univ Notre Dame, Business Management, Notre Dame, IN USA
[4] King Abdulaziz Univ, Marine Sci Dept, Jeddah, Saudi Arabia
关键词
Human factors; information security; information security policies; reinforcement; threat perception; AWARENESS; CULTURE;
D O I
10.1080/19393555.2025.2457702
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
While organizations increasingly rely on information technology for competitive advantage, safeguarding sensitive data hinges on more than just technical safeguards. Alarmingly, employee actions account for a growing percentage of information security breaches, highlighting the critical role of human factors. Building upon the understanding that human resources are key to maintaining organizational security, this study investigates the relationship between five key human factors security culture, awareness, training, risk perception, and reinforcement and employee compliance with information security policies. Through quantitative research, we propose and validate a conceptual framework demonstrating a significant positive association between these human factors and compliant behavior. Our findings emphasize the profound influence of security culture as a primary driver of secure practices within organizations. These insights offer practical guidance for organizations to move beyond a technology centric approach and prioritize a human centric security strategy that integrates these factors into policy design, training programs, and organizational culture.
引用
收藏
页数:16
相关论文
共 50 条