The role of norms in information security policy compliance

PurposeThe purpose of this paper is to determine which factors influence information system security policy compliance. It examines how different norms influence compliance intention.Design/methodology/approachBased on relevant literature on information system security policy compliance, a research...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:Information and computer security 2020-11, Vol.28 (5), p.743-761
Hauptverfasser: Wiafe, Isaac, Koranteng, Felix Nti, Wiafe, Abigail, Obeng, Emmanuel Nyarko, Yaokumah, Winfred
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:PurposeThe purpose of this paper is to determine which factors influence information system security policy compliance. It examines how different norms influence compliance intention.Design/methodology/approachBased on relevant literature on information system security policy compliance, a research model was developed and validated. An online questionnaire was used to gather data from respondents and partial least square structural equation modelling (PLS-SEM) was used to analyse 432 responses received.FindingsThe results indicated that attitude towards information security compliance mediates the effects of personal norms on compliance intention. In addition, descriptive and subjective norms are significant predictors of personal norms.Originality/valueThough advancement in technology has reached significant heights, it is still inadequate to guaranteed information systems’ security. Researchers have identified humans to be central in ensuring information security. To this effect, this study provides empirical evidence of the role of norms in influence information security behaviour.
ISSN:2056-4961
2056-497X
DOI:10.1108/ICS-08-2019-0095