工作(物理)
顺从(心理学)
信息安全
安全策略
个人可识别信息
业务
信息安全管理
计算机安全
互联网隐私
计算机科学
云安全计算
安全信息和事件管理
心理学
云计算
社会心理学
工程类
机械工程
操作系统
作者
Carlos Ivan Torres,Robert E. Crossler
标识
DOI:10.1287/isre.2021.0563
摘要
Organizations worldwide face critical concerns related to cybersecurity threats and information security policy (ISP) compliance. Even though humans are the weakest link in the cybersecurity chain, information security professionals understand the importance of promoting individual information security behaviors because employees are also the first line of defense against ever-increasing cyber threats. Despite a recent trend of working from home, organizations do not make significant differences in their information security interventions for remote workers, relying mainly on VPNs as the only used tool, essentially making employees follow in-office standard information security policies because they are “virtually in-office.” Our study suggests that organizations need to recognize the unique context of remote work and consider personal motivations when shaping information security practices. Furthermore, our study indicates that in order to motivate remote employees to follow secure information security practices, organizations should consider personal characteristics instead of focusing on generic interventions. For instance, our study compares onsite and remote workers, suggesting that personal values are more relevant in remote work settings. Our findings exemplify just one of the many potential personal characteristics to be considered, highlighting how personal values are important motivators for ISP compliance and how they differ for onsite and remote workers in their importance when following information security rules.
科研通智能强力驱动
Strongly Powered by AbleSci AI