Information Security Effectiveness: Conceptualization and Validation of a Theory
Kenneth J. Knapp,
Thomas E. Marshall,
R. Kelly Rainer and
F. Nelson Ford
Additional contact information
Kenneth J. Knapp: US Air Force Academy, USA
Thomas E. Marshall: Auburn University, USA
R. Kelly Rainer: Auburn University, USA
F. Nelson Ford: Auburn University, USA
International Journal of Information Security and Privacy (IJISP), 2007, vol. 1, issue 2, 37-60
Abstract:
Taking a sequential qualitative-quantitative methodological approach, we propose and test a theoretical model that includes four variables through which top management can positively influence security effectiveness: user training, security culture, policy relevance, and policy enforcement. During the qualitative phase of the study, we generated the model based on textual responses to a series of questions given to a sample of 220 information security practitioners. During the quantitative phase, we analyzed survey data collected from a sample of 740 information security practitioners. After data collection, we analyzed the survey responses using structural equation modeling and found evidence to support the hypothesized model. We also tested an alternative, higher-order factor version of the original model that demonstrated an improved overall fit and general applicability across the various demographics of the sampled data. We then linked the finding of this study to existing top management support literature, general deterrence theory research, and the theoretical notion of the dilemma of the supervisor.
Date: 2007
References: Add references at CitEc
Citations: View citations in EconPapers (4)
Downloads: (external link)
http://services.igi-global.com/resolvedoi/resolve. ... 4018/jisp.2007040103 (application/pdf)
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:igg:jisp00:v:1:y:2007:i:2:p:37-60
Access Statistics for this article
International Journal of Information Security and Privacy (IJISP) is currently edited by Yassine Maleh
More articles in International Journal of Information Security and Privacy (IJISP) from IGI Global
Bibliographic data for series maintained by Journal Editor ().