Towards a complete understanding of information security misbehaviours: a proposal for future research with social network approach

Insider's intentional misbehaviours without the malicious intent to harm and security workarounds are emerging issues in information security behavioural field. To mitigate these insider's threats, prior research has been confirming many contributing factors of misbehaviours by focusing mu...

Full description

Bibliographic Details
Main Authors: Dang-Pham, Duy (Author), Pittayachawan, Siddhi (Author), Bruno, Vince (Author)
Format: Others
Published: ACIS, 2014-12-04T01:20:13Z.
Subjects:
Online Access:Get fulltext
Description
Summary:Insider's intentional misbehaviours without the malicious intent to harm and security workarounds are emerging issues in information security behavioural field. To mitigate these insider's threats, prior research has been confirming many contributing factors of misbehaviours by focusing much on the cognition of employees as individual beings. Consequently, these studies' practical values are inevitably limited by the assumptions of their focus on individuals, which overlook the dynamic exchanges between organisational entities and collectives. From reviewing prior information security behavioural research and detecting their limitations, this paper introduces and proposes social network research as a new approach that would complement to the current body of knowledge. As a result, we discuss the potential directions of social network research and provide some potential research ideas that could be investigated using social network analysis techniques.
Item Description:Proceedings of the 25th Australasian Conference on Information Systems, 8th - 10th December, Auckland, New Zealand
978-1-927184-26-4