Corporate Information Security Investment Decisions: A Qualitative Data Analysis Approach

被引:6
|
作者
Schatz, Daniel [1 ]
Bashroush, Rabih [2 ,3 ]
机构
[1] Univ East London, London, England
[2] Univ East London, Comp Sci, London, England
[3] Univ East London, Enterprise Comp Res Grp, London, England
关键词
Grounded Theory; Information Security Management; Problem Structuring Method; Qualitative Research; Security Economics;
D O I
10.4018/IJEIS.2018040101
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This article describes how with information security steadily moving up on board room agendas, security programs are found to be under increasing scrutiny by practitioners. This level of attention by senior business leaders is new to many security professionals as their field has been of limited interest to non-executive directors so far. Currently, they have to regularly report on efficiency and value of their security capabilities whilst being measured against business priorities. Based on the Grounded Theory approach, the authors analysed the data gathered in a series of interviews with senior professionals in order to identify key factors in the context of information security investment decisions. The authors present detailed findings in context of a simplified framework that security practitioners can utilise for critical review or improvements of investment decisions in their own environments. Extensive details for each category as extracted through a qualitative data analysis are provided along with a category network analysis that highlights strong relationships within the framework.
引用
收藏
页码:1 / 20
页数:20
相关论文
共 50 条
  • [1] Information Asymmetry and Corporate Investment Decisions: A Dynamic Approach
    Tsai, Shih-Chuan
    [J]. FINANCIAL REVIEW, 2008, 43 (02) : 241 - 271
  • [2] Knowledge sharing and investment decisions in information security
    Liu, Dengpan
    Ji, Yonghua
    Mookerjee, Vijay
    [J]. DECISION SUPPORT SYSTEMS, 2011, 52 (01) : 95 - 107
  • [3] Prospect Theory and Information Security Investment Decisions
    Young, Diana K.
    Beebe, Nicole L.
    Chang, Frederick R.
    [J]. AMCIS 2012 PROCEEDINGS, 2012,
  • [4] Applying ROI analysis to support SOA information security investment decisions
    Buck, Kevin
    Das, Prasant
    Hanf, Diane
    [J]. 2008 IEEE CONFERENCE ON TECHNOLOGIES FOR HOMELAND SECURITY, VOLS 1 AND 2, 2008, : 359 - +
  • [5] Corporate financing and investment decisions under asymmetric information
    Y. Lal Mahajan
    [J]. International Advances in Economic Research, 1999, 5 (1) : 148 - 149
  • [6] Firm investment decisions for information security under a fuzzy environment: a game-theoretic approach
    Gupta, Rohit
    Biswas, Baidyanath
    Biswas, Indranil
    Sana, Shib Sankar
    [J]. INFORMATION AND COMPUTER SECURITY, 2021, 29 (01) : 73 - 104
  • [7] The Utilization of Quantitative and Qualitative Information in Groups' Capital Investment Decisions
    Ang, Nicole P.
    Trotman, Ken T.
    [J]. BEHAVIORAL RESEARCH IN ACCOUNTING, 2015, 27 (01) : 1 - 24
  • [8] Framing Information Security Budget Requests to Influence Investment Decisions
    Beebe, Nicole L.
    Young, Diana K.
    Chang, Frederick R.
    [J]. COMMUNICATIONS OF THE ASSOCIATION FOR INFORMATION SYSTEMS, 2014, 35 : 133 - 143
  • [9] Topological data analysis in investment decisions
    Goel, Anubha
    Pasricha, Puneet
    Mehra, Aparna
    [J]. EXPERT SYSTEMS WITH APPLICATIONS, 2020, 147
  • [10] Evaluation of information technology investment: a data envelopment analysis approach
    Chen, Y
    Liang, L
    Yang, F
    Zhu, J
    [J]. COMPUTERS & OPERATIONS RESEARCH, 2006, 33 (05) : 1368 - 1379