Insider Threats to Cyber Security in an Audit Environment
Admire Njowa,
Belinda Schutte () and
Zaakir Ally ()
Additional contact information
Admire Njowa: University of Johannesburg
Belinda Schutte: University of Johannesburg
Zaakir Ally: University of Johannesburg
A chapter in Towards Digitally Transforming Accounting and Business Processes, 2024, pp 379-397 from Springer
Abstract:
Abstract There has been a notable increase in insider threats to information security (IS) globally. South African entities have thus not been spared, and the challenges relating to insider information security threats affect firms of all sizes and in all industries. It therefore follows that audit firms are not immune, as these rely on the trust given to them by their clients to keep their information secure. This is therefore a growing problem that has not spared entities in South Africa. The current study sought to evaluate the level of awareness and measures to safeguard client information from cyber related risks that emanate from within. The study employed a positivist research philosophy and a descriptive survey which focused on small to medium audit firms. A questionnaire was used for collecting data, which were analysed using descriptive statistical analysis. Findings showed that there was generally a high level of awareness amongst staff in the firms studied. Most firms have implemented suitable and relevant measures to safeguard client data electronically stored and or transmitted. Results also showed that most of the best practices utilised globally have been adopted in the audit firms under study. These include secure access methods like Virtual Private Network (VPN), internal firewalls, USB port locking, hard drive and memory stick encryption and the use of strong passwords. It was recommended that regulators and policy makers strive to provide the necessary guidance concerning client information security optimisation amongst audit firms, thus standardising this aspect and encouraging the adoption of best practices.
Keywords: Cyber security; Insider threat; Awareness; Information security (search for similar items in EconPapers)
Date: 2024
References: Add references at CitEc
Citations:
There are no downloads for this item, see the EconPapers FAQ for hints about obtaining it.
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:spr:prbchp:978-3-031-46177-4_21
Ordering information: This item can be ordered from
http://www.springer.com/9783031461774
DOI: 10.1007/978-3-031-46177-4_21
Access Statistics for this chapter
More chapters in Springer Proceedings in Business and Economics from Springer
Bibliographic data for series maintained by Sonal Shukla () and Springer Nature Abstracting and Indexing ().