Assessing information security culture: A critical analysis of current approaches
Abstract:
Today's businesses operate in an interconnected and global environment allowing them to collaborate with one another and share information resources. At the same time this interconnectivity exposes the organization to many internal (employees) and external threats. Internal threat is among the top information security issues facing organizations as the human factor is regarded the weakest link in the security chain. To address this “human factor” researchers have suggested the fostering of an information security culture to address the human behavior so that information security becomes a second nature to employees. An important step in the fostering of an information security culture is the assessment of the current state of the culture. This paper focuses on the analysis and comparison of current information security culture assessment approaches, to evaluate their suitability specific for use in the culture …
Año de publicación:
2012
Keywords:
Fuente:
googleTipo de documento:
Other
Estado:
Acceso abierto
Áreas de conocimiento:
- Ciencias de la Computación
- Tecnologías de la información y la comunicación
- Tecnologías de la información y la comunicación
Áreas temáticas de Dewey:
- Funcionamiento de bibliotecas y archivos
- Interacción social
- Dirección general
Objetivos de Desarrollo Sostenible:
- ODS 15: Vida de ecosistemas terrestres
- ODS 12: Producción y consumo responsables
- ODS 17: Alianzas para lograr los objetivos