The Enemy Within: A Behavioural Intention Model and an Information Security Awareness Process

被引:0
|
作者
Gundu, Tapiwa [1 ]
Flowerday, Stephen V. [1 ]
机构
[1] Univ Ft Hare, Dept Informat Syst, E London, South Africa
关键词
Information Security Awareness; Security Behaviour; POLICY COMPLIANCE; CULTURE;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Most employees in small and medium enterprise (SME) engineering firms now have access to their own personal workstations which have become part of their daily functions. This has led to an increased need for information security management to safeguard against loss/alteration or theft of the firm's important information. SMEs tend to be concerned with vulnerabilities from external threats, although industry research suggests that a substantial proportion of security incidents originate from insiders within the firm. Hence, physical preventative measures such as antivirus software and firewalls are proving to solve only part of the problem as the employees controlling them do not have adequate information security knowledge. This tends to expose the firm to costly mistakes that can be made by naive/uninformed employees. This paper presents an information security awareness process that seeks to cultivate positive security behaviours using the behavioural intentions models i.e. the Theory of Reasoned Action and the Protection Motivation Theory. The process presented has been tested at an SME engineering firm, and findings are also presented and discussed in this paper.
引用
收藏
页数:8
相关论文
共 50 条
  • [21] Shaping intention to resist social engineering through transformational leadership, information security culture and awareness
    Flores, Waldo Rocha
    Ekstedt, Mathias
    COMPUTERS & SECURITY, 2016, 59 : 26 - 44
  • [22] Awareness, risk perception and behavioural intention in patients with a myocardial infarction
    Ten Cate, D.
    Gamel, C. J.
    Sol, B. G. M.
    EUROPEAN JOURNAL OF CARDIOVASCULAR NURSING, 2011, 10 : S23 - S23
  • [23] Effects of an awareness raising campaign on intention and behavioural determinants for handwashing
    Seimetz, E.
    Kumar, S.
    Mosler, H. -J.
    HEALTH EDUCATION RESEARCH, 2016, 31 (02) : 109 - 120
  • [24] Awareness, Risk Perception, and Behavioural Intention in Patients With a Myocardial Infarction
    ten Cate, Debbie
    Gamel, Claudia J.
    Sol, Berna G. M.
    JOURNAL OF CARDIOVASCULAR NURSING, 2012, 27 (05) : 372 - 372
  • [25] Information Security Policy Compliance: The Role of Information Security Awareness
    AL-Omari, Ahmad
    El-Gayar, Omar
    Deokar, Amit
    AMCIS 2012 PROCEEDINGS, 2012,
  • [26] Risk Evaluation Process Model of Information Security
    Liu Jing
    2009 INTERNATIONAL CONFERENCE ON MEASURING TECHNOLOGY AND MECHATRONICS AUTOMATION, VOL II, 2009, : 321 - 324
  • [27] Information Security Service Branding - beyond information security awareness
    Rastogi, Rahul
    von Solms, Rossouw
    IMSCI'11: THE 5TH INTERNATIONAL MULTI-CONFERENCE ON SOCIETY, CYBERNETICS AND INFORMATICS, VOL I, 2011, : 55 - 60
  • [28] Towards information security behavioural compliance
    Vroom, C
    von Solms, R
    COMPUTERS & SECURITY, 2004, 23 (03) : 191 - 198
  • [29] The enemy within: The inherent security risks of temporary staff
    Liu, Ching
    Computer Fraud and Security, 2014, 2014 (05): : 5 - 7
  • [30] Mediation Model of Service Quality and Behavioural Intention to Use of Artificial Intelligence Security Technology in UAE
    Alkuwaiti, Salem Ahmed Abdulla Alafreet
    Ahmad, Ahmad Nur Aizat
    Mosali, Najmaddin Abo
    INTERNATIONAL JOURNAL OF SUSTAINABLE CONSTRUCTION ENGINEERING AND TECHNOLOGY, 2023, 14 (02): : 41 - 54