Skip to main content

ETHNOS_APP

Home • Search • Journals • List 0

Cyber–Information Security Compliance and Violation Behaviour in Organisations

A Systematic Review

Bibliographic Data

ID16901313
AuthorsNoor Suhani Sulaiman, Muhammad Ashraf Fauzi (0000-0003-2137-4602), Walton Wider (0000-0002-0369-4082), Joanne Rajadurai (0000-0003-2221-8126), Suhaidah Hussain, Siti Aminah Harun
Year2022
Volume11
Issue9
Pages386
Publication date2022-08-29
Peer ReviewedYes
Open AccessYes
TypeARTICLE
VenueSocial Sciences (JOURNAL)
Journal identifiersISSN: 2076-0760 • E-ISSN: 2076-0760
PublisherMDPI AG (PUBLISHER • IT)
DOI10.3390/socsci11090386
LanguageEN
References cited83

Cyber and information security (CIS) is an issue of national and international interest. Despite sophisticated security systems and extensive physical countermeasures to combat cyber-attacks, organisations are vulnerable due to the involvement of the human factor. Humans are regarded as the weakest link in cybersecurity systems as development in digital technology advances. The area of cybersecurity is an extension of the previously studied fields of information and internet security. The need to understand the underlying human behavioural factors associated with CIS policy warrants further study, mainly from theoretical perspectives. Based on these underlying theoretical perspectives, this study reviews literature focusing on CIS compliance and violations by personnel within organisations. Sixty studies from the years 2008 to 2020 were reviewed. Findings suggest that several prominent theories were used extensively and integrated with another specific theory. Protection Motivation Theory (PMT), the Theory of Planned Behaviour (TPB), and General Deterrence Theory (GDT) were identified as among the most referred-to theories in this area. The use of current theories is discussed based on their emerging importance and their suitability in future CIS studies. This review lays the foundation for future researchers by determining gaps and areas within the CIS context and encompassing employee compliance and violations within an organisation

  • The social side of sanctions

    Michael Wenzel•Law and Human Behavior•2004

  • Fear Appeals and Information Security Behaviors

    Allen C Johnston, J R Johnston et al.•MIS Quarterly•2010

  • Understanding information systems security policy compliance

    Open Access•Princely Ifinedo•Computers & Security•2012

  • Information Security Policy Compliance

    Burcu Bulgurcu, Hasan Cavusoglu et al.•MIS Quarterly•2010

  • Neutralization

    Mikko Siponen, Anthony Vance•MIS Quarterly•2010

  • Understanding online safety behaviors

    Open Access•Hsin-yi Sandy Tsai, Mengtian Jiang et al.•Computers & Security•2016

  • Culture and Organizations

    Geert Hofstede•International Studies of…•1980

  • What Do Systems Users Have to Fear? Using Fear Appeals to Engender Threats and Fear that Motivate Protective Security Behaviors1

    Scott R Boss, Dennis F Galletta et al.•MIS Quarterly•2015

  • Protection motivation and deterrence

    Open Access•Tejaswini Herath, H Raghav Rao•European Journal of Information…•2009

  • Factors affecting risky cybersecurity behaviors by U.S. workers

    Open Access•Andrew R Gillam, W Tad Foster•Computers in Human Behavior•2020

  • Protection motivation and self-efficacy

    Open Access•James E Maddux, Ronald W Rogers•Journal of Experimental Social…•1983

  • The journal coverage of Web of Science and Scopus

    Open Access•Philippe Mongeon, Adèle Paul-Hus•Scientometrics•2015

Citation velocityhistorical
Highly citedNo

Tools

Open DOI
Ethnos_APP • Open Source Project • MIT License • Frontend v2.0.0 • Privacy and Cookies • API Documentation: api.ethnos.app/docs • API Source Code: GitHub • DOI: 10.5281/zenodo.17049435 • Frontend Source Code: GitHub • DOI: 10.5281/zenodo.17050053 • cruz.rio.br • Expectantes Misericordiae