Exploring behavioral information security networks in an organizational context: An empirical case study

被引:6
|
作者
Duy Dang-Pham [1 ]
Pittayachawan, Siddhi [1 ]
Bruno, Vince [1 ]
机构
[1] RMIT Univ, Sch Business IT & Logist, Melbourne, Vic, Australia
关键词
Social network analysis; Security behavior; Security compliance; Security influence; Organizational behavior; PROTECTION MOTIVATION THEORY; POLICY COMPLIANCE; ATTITUDE-CHANGE; SELF-EFFICACY; FEAR APPEALS; DETERRENCE; COUNTERMEASURES; EMPLOYEES; INTENTION; AWARENESS;
D O I
10.1016/j.jisa.2016.06.002
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The purpose of this research is to propose network research as an alternative approach in the behavioral security field. A case study was conducted in a large interior contractor to explore eight organizational networks, four of which focus on security behaviors. The researchers employed social network analysis methods, including quantitative and qualitative ones, to analyze the case study's data and demonstrate the analytical capability of the network analysis approach in the behavioral security field. Key features of the security networks' structures include high transitivity, hierarchy, and centralization, whereas reciprocity and density are lower than other organizational networks. Moreover, work-related interactions were found to impact security influence, among which giving IT advice increases significantly one's influential status in security matters. Practical implications include suggestions about the use of network analysis methods as a tool for security managers to monitor their behavioral security networks and devise appropriate strategies. Potential research directions are also elaborated, which future research can employ and promote the novel and practical use of network analysis techniques. (C) 2016 Elsevier Ltd. All rights reserved.
引用
下载
收藏
页码:46 / 62
页数:17
相关论文
共 50 条