首页> 外文学位 >Motivating Cybersecurity Compliance in Critical Infrastructure Industries: A Grounded Theory Study
【24h】

Motivating Cybersecurity Compliance in Critical Infrastructure Industries: A Grounded Theory Study

机译:鼓励关键基础设施行业的网络安全合规性:一项扎根的理论研究

获取原文
获取原文并翻译 | 示例

摘要

A theoretical gap was identified in explaining the motivational factors behind private sector cybersecurity policy compliance in critical infrastructure industries. A constructivist grounded theory approach was used to collect and analyze qualified participant experiences, resulting in a theoretical model that frames these motivational constructs as event-driven actions. The full population for this study encompassed the private sector infrastructure owners and operators of the 16 recognized critical infrastructure industries within the United States. The sample frame for this study was the InfraGard Members Alliance, a national volunteer network of more than 55,000 public-private sector and academic associates. The recruited sample included 13 purposively selected participants from nine different critical infrastructure industries across five California counties with a variety of cybersecurity occupations and years of experience. An open-ended interview protocol was used to collect participant experiences, which were inductively analyzed using grounded theory's constant comparative processes for theory construction. The core variable emerging from the data represented reactive impulses towards compliance closely related to the design-time, run-time, and post-processing characteristics of event-driven processes. The results of this study support a new theory of event-driven cybersecurity compliance motivation (ECCM) that is grounded in the theoretical constructs of regulatory density, organizational maturity, and compliance return-on-investment. Attributes of these ECCM theoretical constructs included pre-existing regulatory conditions, capability enabling interactions, and compliance consequences as described by the private sector owners and operators of critical U.S. infrastructure industries.
机译:在解释关键基础设施行业中遵守私营部门网络安全政策背后的动机因素时,发现了理论上的差距。建构主义扎根的理论方法被用来收集和分析合格的参与者的经验,从而形成了一个理论模型,将这些动机结构构造为事件驱动的行为。这项研究的全部人口包括美国16个公认的关键基础设施行业的私营部门基础设施所有者和运营商。这项研究的样本框架是InfraGard成员联盟,该联盟是一个全国性的志愿者网络,由55,000多个公私部门和学术伙伴组成。所招募的样本包括来自加利福尼亚五个县的九个不同关键基础设施行业的13名有针对性的参与者,这些参与者具有各种网络安全职业和多年经验。使用开放式访谈协议收集参与者的经验,并使用扎根理论的恒定比较过程进行归纳分析,以进行理论构建。从数据中得出的核心变量表示对遵从性的反应性冲动,这些冲动与事件驱动流程的设计时,运行时和后处理特性密切相关。这项研究的结果支持了事件驱动的网络安全合规动机(ECCM)的新理论,该理论以监管密度,组织成熟度和合规投资回报的理论结构为基础。这些ECCM理论构架的属性包括预先存在的监管条件,促进互动的能力以及合规性后果,如私营部门所有者和关键的美国基础设施行业的运营商所描述的。

著录项

  • 作者

    McSweeney, Kelly.;

  • 作者单位

    Capella University.;

  • 授予单位 Capella University.;
  • 学科 Organizational behavior.;Organization theory.;Public policy.;Computer science.
  • 学位 Ph.D.
  • 年度 2018
  • 页码 211 p.
  • 总页数 211
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号