首页> 外文期刊>Journal of systems and information technology >Assessment of information security maturity An exploration study of Malaysian public service organizations
【24h】

Assessment of information security maturity An exploration study of Malaysian public service organizations

机译:信息安全成熟度评估马来西亚公共服务组织的探索研究

获取原文
获取原文并翻译 | 示例
           

摘要

Purpose - The purpose of this paper is to examine the basis factors involved in the information security management systems of Malaysian public service (MPS) organizations. Therefore, it proposes an empirical analysis which was conducted to identify the antecedents of the information security maturity (ISM) of an organization; and to clarify the relationship between ISM and the social and technical factors identified. Design/methodology/approach - This study uses quantitative approach, convenience sampling and the required data collected from 970 key players' managers in information security, in a total of 722 government agencies, through a self-administrated survey. Research adopted the Wallace et al process to develop and validate the study's instrument. Findings - The paper provides empirical insights and reveals a number of underlying dimensions of social factors and one technical factor. The risk management was found to be the formal coping mechanism adopted in the MPS organizations and is the leading factor towards ISM. The social factors have the most influence on MPS organizations' ISM. Findings demonstrate that two independent variables, risk management and individual perception, discriminate between those organizations that have high and low ISM. Research limitations/implications - The research results may lack generalization; therefore, researchers are encouraged to test the proposed propositions further in a different context. Practical implications - The paper includes implications for the development of a powerful instrument in explaining the ISM. Moreover, it helps internal stakeholders of an organization to formulate a more appropriate policy or give a more effective focus on issues that are really relevant to MPS information security management. Originality/value - This paper fulfils the identified need to explore determinants of information security maturity.
机译:目的-本文的目的是研究涉及马来西亚公共服务(MPS)组织的信息安全管理系统的基本因素。因此,它提出了一项实证分析,以识别组织的信息安全成熟度(ISM)的先决条件。并阐明ISM与所确定的社会和技术因素之间的关系。设计/方法/方法-这项研究采用定量方法,便捷抽样以及通过自我管理的调查,从总共722个政府机构中的970名信息安全关键参与者经理那里收集了所需数据。研究采用了Wallace等人的方法来开发和验证研究工具。调查结果-本文提供了经验性见解,并揭示了社会因素和一个技术因素的许多潜在方面。发现风险管理是MPS组织中采用的正式应对机制,并且是ISM的主要因素。社会因素对MPS组织的ISM影响最大。研究结果表明,风险管理和个人认知这两个独立变量可以区分那些ISM高和低的组织。研究局限/含义-研究结果可能缺乏概括性;因此,鼓励研究人员在不同的背景下进一步检验提出的命题。实际意义-本文包括对解释ISM的强大工具的意义。而且,它可以帮助组织的内部利益相关者制定更适当的策略,或者更有效地关注与MPS信息安全管理真正相关的问题。原创性/价值-本文满足了探索信息安全成熟度决定因素的确定需求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号