The influence of organisational culture and information security culture on employee compliance behaviour. Issue 4 (7th October 2020)
- Record Type:
- Journal Article
- Title:
- The influence of organisational culture and information security culture on employee compliance behaviour. Issue 4 (7th October 2020)
- Main Title:
- The influence of organisational culture and information security culture on employee compliance behaviour
- Authors:
- Solomon, Grant
Brown, Irwin - Abstract:
- Abstract : Purpose: Organisational culture plays an important role in influencing employee compliance with information security policies. Creating a subculture of information security can assist in facilitating compliance. The purpose of this paper is to explain the nature of the combined influence of organisational culture and information security culture on employee information security compliance. This study also aims to explain the influence of organisational culture on information security culture. Design/methodology/approach: A theoretical model was developed showing the relationships between organisational culture, information security culture and employee compliance. Using an online survey, data was collected from a sample of individuals who work in organisations having information security policies. The data was analysed with Partial Least Square Structural Equation Modelling (PLS-SEM) to test the model. Findings: Organisational culture and information security culture have significant, yet similar influences on employee compliance. In addition, organisational culture has a strong causal influence on information security culture. Practical implications: Control-oriented organisational cultures are conducive to information security compliant behaviour. For an information security subculture to be effectively embedded in an organisation's culture, the dominant organisational culture would have to be considered first. Originality/value: This research provides empiricalAbstract : Purpose: Organisational culture plays an important role in influencing employee compliance with information security policies. Creating a subculture of information security can assist in facilitating compliance. The purpose of this paper is to explain the nature of the combined influence of organisational culture and information security culture on employee information security compliance. This study also aims to explain the influence of organisational culture on information security culture. Design/methodology/approach: A theoretical model was developed showing the relationships between organisational culture, information security culture and employee compliance. Using an online survey, data was collected from a sample of individuals who work in organisations having information security policies. The data was analysed with Partial Least Square Structural Equation Modelling (PLS-SEM) to test the model. Findings: Organisational culture and information security culture have significant, yet similar influences on employee compliance. In addition, organisational culture has a strong causal influence on information security culture. Practical implications: Control-oriented organisational cultures are conducive to information security compliant behaviour. For an information security subculture to be effectively embedded in an organisation's culture, the dominant organisational culture would have to be considered first. Originality/value: This research provides empirical evidence that information security subculture is influenced by organisational culture. Compliance is best explained by their joint influence. … (more)
- Is Part Of:
- Journal of enterprise information management. Volume 34:Issue 4(2021)
- Journal:
- Journal of enterprise information management
- Issue:
- Volume 34:Issue 4(2021)
- Issue Display:
- Volume 34, Issue 4 (2021)
- Year:
- 2021
- Volume:
- 34
- Issue:
- 4
- Issue Sort Value:
- 2021-0034-0004-0000
- Page Start:
- 1203
- Page End:
- 1228
- Publication Date:
- 2020-10-07
- Subjects:
- Organisational culture -- Information security culture -- Compliance behaviour
Management information systems -- Periodicals
Business logistics -- Periodicals
Business -- Data processing -- Periodicals
Management -- Data processing -- Periodicals
658.05 - Journal URLs:
- http://info.emeraldinsight.com/products/journals/journals.htm?id=jeim ↗
http://www.emeraldinsight.com/ ↗ - DOI:
- 10.1108/JEIM-08-2019-0217 ↗
- Languages:
- English
- ISSNs:
- 1741-0398
- Deposit Type:
- Legaldeposit
- View Content:
- Available online (eLD content is only available in our Reading Rooms) ↗
- Physical Locations:
- British Library DSC - 4979.291700
British Library DSC - BLDSS-3PM
British Library HMNTS - ELD Digital store - Ingest File:
- 23591.xml