What levels of moral reasoning and values explain adherence to information security rules? An empirical study
Liisa Myyry,
Mikko Siponen,
Seppo Pahnila,
Tero Vartiainen and
Anthony Vance
European Journal of Information Systems, 2009, vol. 18, issue 2, 126-139
Abstract:
It is widely agreed that employee non-adherence to information security policies poses a major problem for organizations. Previous research has pointed to the potential of theories of moral reasoning to better understand this problem. However, we find no empirical studies that examine the influence of moral reasoning on compliance with information security policies. We address this research gap by proposing a theoretical model that explains non-compliance in terms of moral reasoning and values. The model integrates two well-known psychological theories: the Theory of Cognitive Moral Development by Kohlberg and the Theory of Motivational Types of Values by Schwartz. Our empirical findings largely support the proposed model and suggest implications for practice and research on how to improve information security policy compliance.
Date: 2009
References: Add references at CitEc
Citations: View citations in EconPapers (4)
Downloads: (external link)
http://hdl.handle.net/10.1057/ejis.2009.10 (text/html)
Access to full text is restricted to subscribers.
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:taf:tjisxx:v:18:y:2009:i:2:p:126-139
Ordering information: This journal article can be ordered from
http://www.tandfonline.com/pricing/journal/tjis20
DOI: 10.1057/ejis.2009.10
Access Statistics for this article
European Journal of Information Systems is currently edited by Par Agerfalk
More articles in European Journal of Information Systems from Taylor & Francis Journals
Bibliographic data for series maintained by Chris Longhurst ().