Towards corporate information security obedience

被引:0
|
作者
Thomson, KL [1 ]
von Solms, R [1 ]
机构
[1] Port Elizabeth Technikon, Port Elizabeth, South Africa
关键词
information security; corporate governance; corporate culture; goal consensus; corporate information security obedience;
D O I
10.1007/1-4020-8145-6_2
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
All organisations possess a corporate culture, whether they are aware of it or not. This culture determines, to a large extent, the effectiveness of an organisation and the behaviour of employees within an organisation. As part of its corporate governance duties, senior management is responsible for the protection of the assets of its organisation. And as information is a vital asset to most organisations, senior management is ultimately responsible for the protection of information assets. An ideal corporate culture, in terms of information security, would be one where the second-nature behaviour of employees, determined by the culture, is to protect information assets. This paper will provide initial guidelines as to how to establish this culture by examining Schein's model and by investigating how to start implementing Corporate Information Security Obedience.
引用
收藏
页码:19 / 31
页数:13
相关论文
共 50 条