Vis enkel innførsel

dc.contributor.authorSoliman, Wael
dc.contributor.authorOjalainen, Anniina
dc.date.accessioned2024-03-25T10:09:16Z
dc.date.available2024-03-25T10:09:16Z
dc.date.created2023-01-19T12:03:38Z
dc.date.issued2023
dc.identifier.citationSoliman, W. & Ojalainen, A. (2023). Conflict Resolution in an ISO/IEC 27001 Standard Implementation: A Contradiction Management Perspective. Proceedings of the 56th Hawaii International Conference on System Sciences, 4839-4848. https://hdl.handle.net/10125/103223en_US
dc.identifier.isbn978-0-9981331-6-4
dc.identifier.urihttps://hdl.handle.net/11250/3124039
dc.description.abstractThe ISO/IEC 27001 standard provides organizations with guidelines to help them evaluate, document, and improve their information security processes. In practice, however, the generality of the standard can create a conflict between its requirements and the adopters’ expectations. To better understand how an organization manages such conflicts, we conduct a case study in a Finnish corporation during the standard’s implementation in one of its units. Two critical conflicts emerged: Conflict I reflects a tension between the standard requirement for disciplinary measures vis-à-vis the organization’s punishment-averse culture. Conflict II reflects a tension between the organization’s aspiration for concrete code reviewing instructions vis-à-vis the lack thereof in the standard. Our findings reveal that whereas the conflict resolution process was similar in managing both conflicts, their content was radically different. Specifically, whereas conflict I’s resolution was paradoxical, conflict II’s resolution was dialectical. We discuss the theoretical and practical implications of our findings.en_US
dc.language.isoengen_US
dc.publisherUniversity of Hawai'i at Manoaen_US
dc.relation.ispartofProceedings of the 56thAnnual Hawaii International Conference on System Sciences
dc.relation.urihttps://hdl.handle.net/10125/103223
dc.rightsAttribution-NonCommercial-NoDerivatives 4.0 Internasjonal*
dc.rights.urihttp://creativecommons.org/licenses/by-nc-nd/4.0/deed.no*
dc.titleConflict Resolution in an ISO/IEC 27001 Standard Implementation: A Contradiction Management Perspectiveen_US
dc.typePeer revieweden_US
dc.typeJournal articleen_US
dc.description.versionpublishedVersionen_US
dc.rights.holder© 2023 The Author(s)en_US
dc.subject.nsiVDP::Datateknologi: 551en_US
dc.subject.nsiVDP::Computer technology: 551en_US
dc.source.pagenumber4839-4848en_US
dc.source.journalProceedings of the 56th Hawaii International Conference on System Sciencesen_US
dc.identifier.cristin2110239


Tilhørende fil(er)

Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel

Attribution-NonCommercial-NoDerivatives 4.0 Internasjonal
Med mindre annet er angitt, så er denne innførselen lisensiert som Attribution-NonCommercial-NoDerivatives 4.0 Internasjonal