Vis enkel innførsel

dc.contributor.authorBekkevik, Frode Mathias
dc.contributor.authorHolm, Ole Reidar
dc.contributor.authorVassilakopoulou, Polyxeni
dc.contributor.authorHustad, Eli
dc.date.accessioned2019-01-31T08:41:53Z
dc.date.available2019-01-31T08:41:53Z
dc.date.created2019-01-16T16:46:00Z
dc.date.issued2018
dc.identifier.isbn978-960-7260-61-1
dc.identifier.urihttp://hdl.handle.net/11250/2583256
dc.description.abstractThis paper reports a systematic literature review that explores challenges related to information security practices in organizations and the ways these challenges are managed to avoid security breaches. We focused on empirical evidence from extant research studies and identified four general challenges re-lated to: (1) security rules and procedures, (2) individual and personal risks, (3) culture and security awareness, and (4) organizational and power relations. To manage these risks, nine measures were prominent in the selected studies. Training and organizational collaboration across the hierarchical levels were widely used to enhance the security culture. In addition, awareness campaigns for the work-force, as well as continuously measuring and improving security initiatives were highly recommended. Our literature review points to the socio-technical aspects of information security. Although many or-ganizations have both administrative and technical infrastructures in place, they must also think about employee attitudes, knowledge, and behavior. Information systems research towards this direction needs to be further developed. More qualitative studies are needed for exploring how to develop a culture of security awareness and for gaining insights on how security rules and training courses can become more appealing and accessible.nb_NO
dc.description.abstractInformation Security Practices in Organizations: A Literature Review on Challenges and Related Measuresnb_NO
dc.language.isoengnb_NO
dc.relation.ispartofDigital and social transformation for a better society - Proceedings of the Twelfth Mediterranean Conference on Information Systems (MCIS 2018)
dc.subjectInformasjonssikkerhetnb_NO
dc.subjectInformation securitynb_NO
dc.titleInformation Security Practices in Organizations: A Literature Review on Challenges and Related Measuresnb_NO
dc.typeChapternb_NO
dc.typePeer reviewednb_NO
dc.description.versionsubmittedVersionnb_NO
dc.identifier.cristin1658658
dc.description.localcodeNivå1nb_NO
cristin.unitcode201,19,1,0
cristin.unitnameInstitutt for informasjonssystemer
cristin.ispublishedtrue
cristin.fulltextpreprint
cristin.qualitycode1


Tilhørende fil(er)

Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel