Employee Intention to Whistleblow Information Security Policy Violation
نویسندگان
چکیده
Insider abuse has always been a significant threat to information security management in organization. In order to address this issue, in this research we propose whistleblowing as another complementary measure to other existent approaches to strengthen the internal information security management. In particular, we focus on an investigation of employee intention to whistle-blow information security policy (ISP) violation. Drawing on the theory of planned behavior and rational choice theory, we develop a theoretical model to understand the factors at the organizational and individual levels that might influence whistleblowing attitude and whistleblowing intention. Through a survey-based empirical investigation, we anticipate the results to enhance our existing knowledge on management of insider abuse against information security policy within organizations.
منابع مشابه
Quality of Working Life: An Antecedent to Employee Turnover Intention
Background The purpose of this study was to measure the level of quality of work life (QWL) among hospital employees in Iran. Additionally, it aimed to identify the factors that are critical to employees’ QWL. It also aimed to test a theoretical model of the relationship between employees’ QWL and their intention to leave the organisation. Methods A survey study was conducted based on a sample ...
متن کاملThe Impact of Perceived Organizational Support through the Mediating Role of Psychological Contract Violation on Work Outcomes
. Perceived organizational support has been raised as work backbone of employee in the organization and the psychological contracts are also a set of promises that top managers give to support their employees. Therefore, violation of this contract not only involves depriving organizational support, but also reduces the employee's belongings. The main purpose of this paper was to examine the imp...
متن کاملBeyond Deterrence: An Expanded View of Employee Computer Abuse
Recent academic investigations of computer security policy violations have largely focused on non-malicious noncompliance due to poor training, low employee motivation, weak affective commitment, or individual oversight. Established theoretical foundations applied to this domain have related to protection motivation, deterrence, planned behavior, self-efficacy, individual adoption factors, orga...
متن کاملUnderstanding Information Security Compliance - Why Goal Setting and Rewards Might be a Bad Idea
Since organizational information security policies can only improve security if employees comply with them, understanding the factors that affect employee security compliance is crucial for strengthening information security. Based on a survey with 200 German employees, we find that reward for production goal achievement negatively impacts security compliance. Whereas a distinct error aversion ...
متن کاملUnderstanding Organization Employee's Information Security Omission Behavior: an Integrated Model of Social norm and Deterrence
Employee`s information security behavior is critical to ensure the security of organization`s information assets. Countermeasures, such as information security policies, are helpful to reduce computer abuse and information systems misuse. However, employees in practice tend to engage in these violation behaviors, although they know policies and countermeasures. Undoubtedly, these omission behav...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2014