Ändra sökning
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf
Information Security Culture: Definition, Frameworks and Assessment: A Systematic Literature Review
2015 (Engelska)Självständigt arbete på avancerad nivå (masterexamen), 20 poäng / 30 hpStudentuppsats (Examensarbete)
Abstract [en]

Nowadays organisations operate in a global environment which enables organisations to collaborate and share information resources among themselves but at the same time exposes them to various threats both within (employees) and from outside of the organisation. Internal threat is among the top information security issues facing organisations as the human factor is regarded the weakest link in the security chain. To address this “human factor” researchers have suggested the fostering of an information security culture to address the human behaviour so that information security becomes a second nature to employees.In order to establish an information security culture in an organisation it is important to understand what the term “information security culture” means; what frameworks and models have been proposed in order to explain and establish information security culture by discussing various issues of ISC. Another important step in fostering of information security culture is the assessment of the current state of the culture in an organisation. A systematic literature review was conducted utilizing the suggested approach by Okoli and Schabram in order to investigate key literature in information security culture domain published during the period 2002-2014 to determine the most comprehensive definition of ISC; to identify frameworks covering various aspects of information security culture along with methodologies and empirical data used; and to analyse current ISC assessment approaches in order to help researchers and practitioners in selecting the most appropriate methodology for establishing, developing and assessing information security culture in an organisation.One research team was found to contribute the most to the ISC research field by providing the most comprehensive ISC definition; developing a comprehensive framework for establishing ISC in an organisation; as well as providing a validated process for assessing current state of security culture.

Ort, förlag, år, upplaga, sidor
2015. , s. 79
Nyckelord [en]
Technology, Information Security Culture, Systematic Literature Review, Framework, Assessment
Nyckelord [sv]
Teknik
Identifikatorer
URN: urn:nbn:se:ltu:diva-45983Lokalt ID: 39f754fd-11f4-4047-a72f-1acdbb33e5ffOAI: oai:DiVA.org:ltu-45983DiVA, id: diva2:1019291
Ämne / kurs
Examensarbete, minst 30 hp
Utbildningsprogram
Datateknik, master
Examinatorer
Anmärkning
Validerat; 20150325 (global_studentproject_submitter)Tillgänglig från: 2016-10-04 Skapad: 2016-10-04Bibliografiskt granskad

Open Access i DiVA

fulltext(820 kB)2113 nedladdningar
Filinformation
Filnamn FULLTEXT02.pdfFilstorlek 820 kBChecksumma SHA-512
346b074a3ce3cc4b13060bc84b22fb8d5e02e4c2b75f5156e356d5137bc95e46ea491630aaec74cdc6d600e2a9e1e374c7bc938a36e40d55d0d0e4b020f12e2a
Typ fulltextMimetyp application/pdf

Sök vidare i DiVA

Av författaren/redaktören
O'Regan Pevchikh, Evgeniya

Sök vidare utanför DiVA

GoogleGoogle Scholar
Totalt: 2115 nedladdningar
Antalet nedladdningar är summan av nedladdningar för alla fulltexter. Det kan inkludera t.ex tidigare versioner som nu inte längre är tillgängliga.

urn-nbn

Altmetricpoäng

urn-nbn
Totalt: 24268 träffar
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf