Identifying factors of "organizational information security management"

被引:42
|
作者
Singh, Abhishek Narain [1 ,3 ]
Gupta, M. P. [1 ,4 ]
Ojha, Amitabh [2 ]
机构
[1] Indian Inst Technol Delhi, Dept Management, New Delhi, India
[2] Govt India, Minist Railway, Res Design & Stand Org, Lucknow, Uttar Pradesh, India
[3] Indian Inst Technol Delhi, Dept Management Studies, Delhi, India
[4] Indian Inst Technol Delhi, Dept Management Studies, Informat Syst & E governance, Delhi, India
基金
中国国家自然科学基金;
关键词
Organizations; Information security; Information security management; Information security management system; Management factors;
D O I
10.1108/JEIM-07-2013-0052
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Purpose - Despite many technically sophisticated solutions, managing information security has remained a persistent challenge for organizations. Emerging IT/ICT media have posed new security challenges to business information and information assets. It is felt that technical solutions alone are not sufficient to address the information security challenge. It has been argued that organizations also need to consider the management aspects of information security. Consequently, literature, especially in the last decade, has witnessed various scholarly works in this direction. Therefore, a synthesis exercise is required to bring clarity on categorizing the issues of organizational information security management (ISM) to take the research forward. The purpose of this paper is to identify management factors that address organizational information security challenges. Design/methodology/approach - Using a mix method approach, the paper adopts the qualitative (keyword analysis and experts' opinion) and quantitative (questionnaire survey) research routes. Exploratory factor analysis is conducted to find out the key factors of organizational ISM. Findings - The paper categorizes various organizational ISM functions into ten factors. Spanning across three levels (strategic, tactical and operational), these factors cover various management issues of organizational ISM. Originality/value - The paper takes the ISM literature forward by statistically validating the key management factors of organizational ISM. The study outcome should help to draw the attention of organizations toward the managerial challenges of organizational ISM.
引用
收藏
页码:644 / +
页数:25
相关论文
共 50 条
  • [41] Organizational Power and Information Security Rule Compliance
    Kolkowska, Ella
    Dhillon, Gurpreet
    [J]. FUTURE CHALLENGES IN SECURITY AND PRIVACY FOR ACADEMIA AND INDUSTRY, 2011, 354 : 185 - +
  • [42] Organizational repertoires and rites in health information security
    Cooper, Ted
    Collmann, Jeff
    Neidermeier, Henry
    [J]. CAMBRIDGE QUARTERLY OF HEALTHCARE ETHICS, 2008, 17 (04) : 441 - 452
  • [43] Implementation and effectiveness of organizational information security measures
    Hagen, Janne Merete
    Albrechtsen, Eirik
    Hovden, Jan
    [J]. Information Management and Computer Security, 2008, 16 (04): : 377 - 397
  • [44] INFORMATION SECURITY AND QUALITY MANAGEMENT SYSTEMS INTEGRATION: CHALLENGES AND CRITICAL FACTORS
    Fiore, Ana P. A.
    Facin, Ana L. F.
    Muniz, Jorge
    [J]. INTERNATIONAL JOURNAL FOR QUALITY RESEARCH, 2023, 17 (03) : 635 - 650
  • [45] Identifying patterns in informal sources of security information
    Rader, Emilee
    Wash, Rick
    [J]. JOURNAL OF CYBERSECURITY, 2015, 1 (01): : 121 - 144
  • [46] IDENTIFYING SECURITY ELEMENTS FOR COOPERATIVE INFORMATION SYSTEMS
    Dagorn, Nathalie
    [J]. SECRYPT 2009: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, 2009, : 319 - 324
  • [47] Information security and organizational change perception: Influences on security attitudes and behaviors
    Arantes, Talita
    Neiva, Elaine
    [J]. INTERNATIONAL JOURNAL OF PSYCHOLOGY, 2012, 47 : 487 - 487
  • [48] Networked Organizational Structure of Enterprise Information Security Management Based on Digital Transformation and Genetic Algorithm
    Di, Zhenpeng
    Liu, Yun
    Li, Shimei
    [J]. FRONTIERS IN PUBLIC HEALTH, 2022, 10
  • [49] Managing Employee Compliance with Information Security Policies: The Critical Role of Top Management and Organizational Culture
    Hu, Qing
    Dinev, Tamara
    Hart, Paul
    Cooke, Donna
    [J]. DECISION SCIENCES, 2012, 43 (04) : 615 - 659
  • [50] THE ROLE OF ORGANIZATIONAL CULTURES IN INFORMATION-SYSTEMS SECURITY MANAGEMENT A Goal-Setting Perspective
    Koskosas, Ioannis V.
    Charitoudi, Georgia
    Louta, Malamati
    [J]. JOURNAL OF LEADERSHIP STUDIES, 2008, 2 (01) : 7 - 17