Please use this identifier to cite or link to this item: http://bura.brunel.ac.uk/handle/2438/26492
Title: Information security policies compliance in a global setting: An employee's perspective
Authors: Alraja, MN
Butt, UJ
Abbod, M
Keywords: information security policies compliance;UMISPC;neutralization;fear;habit and role values;reactance
Issue Date: 29-Mar-2023
Publisher: Elsevier
Citation: Alraja, M.N., Butt, U.J. and Abbod, M. (2023) 'Information security policies compliance in a global setting: An employee's perspective', Computers and Security, 129, 103208, pp. 1 - 16. doi: 10.1016/j.cose.2023.103208.
Abstract: Information security threats have a severe negative impact on enterprises. Organizations rely on employee compliance with information security policies to eliminate or reduce these hazards. The Unified Model of Information Security Policies Compliance (UMISPC) is employed to identify the factors that may affect employees' intention towards compliance with information systems security policy and reactance in a global setting. The study was assessed in two phases. The model's validity and measurement reliability were evaluated in the first phase, while in the second phase, all preliminary model relationships were appraised. This was achieved utilizing structural equation modelling to establish whether the proposed constructs, i.e. neutralization, response efficacy, fear, threat, habit and role values were good predictors for intention or reactance towards compliance with information systems security policy. Participants included 348 employees from 7 nations, i.e. the USA, the UK, Oman, India, Pakistan, Malaysia, and the Philippines. SmartPLS v. 3.3.9 was used for data analysis. The models' measurement reliability and validity were affirmed. Fear and role values have a significant influence on intention toward ISPC. RE significantly predicted threat which in turn significantly predicted fear, and the latter demonstrated a significant effect on reactance as well as Neutralization predicted reactance. In contrast, habit failed to reach a significant influence on intention towards ISPC. The implications are presented, together with proposals for further studies. Our findings are helpful for ISS literature and application by supporting the crucial functions of role values in encouraging employees to behave in a compliant manner. Additionally, it is regarded as the first empirical attempt to estimate intended compliance concerning ISPs in higher education from a worldwide viewpoint.
Description: Data availability: The data that has been used is confidential.
URI: https://bura.brunel.ac.uk/handle/2438/26492
DOI: https://doi.org/10.1016/j.cose.2023.103208
ISSN: 0167-4048
Other Identifiers: ORCID iDs: Mansour Naser Alraja https://orcid.org/0000-0003-3492-8838; Usman Javed Butt https://orcid.org/0000-0002-1703-8756; Maysam Abbod https://orcid.org/0000-0002-8515-7933.
103208
Appears in Collections:Dept of Electronic and Electrical Engineering Research Papers

Files in This Item:
File Description SizeFormat 
FullText.pdfCrown Copyright © 2023 Published by Elsevier Ltd. This is an open access article under the CC BY license ( https://creativecommons.org/licenses/by/4.0/ )1.95 MBAdobe PDFView/Open


This item is licensed under a Creative Commons License Creative Commons