Bridging the divide: A qualitative comparison of information security thought patterns between information security professionals and ordinary organizational insiders

Mindset Information security management Information security standards Information security audit
DOI: 10.1016/j.im.2014.03.009 Publication Date: 2014-04-13T10:01:37Z
ABSTRACT
Abstract Organizational insiders have considerable influence on the effectiveness of information security efforts. However, most research conducted in this area fails to examine what these individuals believe about organizational security efforts. To help bridge this gap, this study assesses the mindset of insiders regarding their relationship with information security efforts and compares it against the mindset of information security professionals. Interviews were conducted with 22 ordinary insiders and 11 information security professionals, an effort that provides insight into how insiders gauge the efficacy of recommended responses to information security threats. Several key differences between insiders’ and professionals’ security mindsets are also discussed.
SUPPLEMENTAL MATERIAL
Coming soon ....
REFERENCES (95)
CITATIONS (105)