An integrated approach for information security compliance in a financial services organisation

Thesis (MTech (Information Technology))--Cape Peninsula University of Technology, 2016. === The aim of this research is to identify and explore the factors affecting information security compliance of information security policies and regulations, in a financial services organisation. The organisati...

Full description

Bibliographic Details
Main Author: Desai, Mohammed Reza
Other Authors: de la Harpe, AC
Language:en
Published: Cape Peninsula University of Technology 2017
Subjects:
Online Access:http://hdl.handle.net/20.500.11838/2396
id ndltd-netd.ac.za-oai-union.ndltd.org-cput-oai-localhost-20.500.11838-2396
record_format oai_dc
spelling ndltd-netd.ac.za-oai-union.ndltd.org-cput-oai-localhost-20.500.11838-23962018-05-28T05:09:51Z An integrated approach for information security compliance in a financial services organisation Desai, Mohammed Reza de la Harpe, AC Financial services industry -- Computer networks -- Safety measures Computer networks -- Security measures Information technology -- Security measures Computer security Financial services industry -- Computer networks -- Law and legislation Thesis (MTech (Information Technology))--Cape Peninsula University of Technology, 2016. The aim of this research is to identify and explore the factors affecting information security compliance of information security policies and regulations, in a financial services organisation. The organisation has to comply with information security regulations and legislations by righteousness of its operations in light of the fact that any wrong doing together with misuse of data, are continually expanding. Corporate embarrassments comes about due to rupture of security, results in expanded thoughtfulness regarding corporate consistency. Legislature and policies have been set up to counter information security issues. This legislature and policies are not adequately addressing the compliance issues that arise, but are needed within organisations. Compliance targets are not met due to inconsistent guidelines that turns out to be significant in diminishing the financial position, reputation and security of information. This research further aims to explore whether employees comply with laws and regulations regarding information in an organisation. This is done in order to confirm whether governance and human factors play any significant part in compliance. The research is an exploratory study and specifically analyses the governance function and which stakeholders influence its operations in information compliance. The research investigates certain questions on organisational culture and the human factor, do influence employee’s compliance to laws and regulations. The objectives of the research are to investigate which factors, and how such factors influence compliance of information security policies and compliance with the goal of designing an integrated framework to assist in counteracting these findings. The research is underpinned by the Neo-institutional theory, Agency Theory and Rational choice theory. The Denison organisational cultural model and a framework proposed by von Solms are used as lenses to interpret the data of the research. 2017-05-15T08:12:00Z 2017-05-15T08:12:00Z 2016 Thesis http://hdl.handle.net/20.500.11838/2396 en http://creativecommons.org/licenses/by-nc-sa/3.0/za/ Cape Peninsula University of Technology
collection NDLTD
language en
sources NDLTD
topic Financial services industry -- Computer networks -- Safety measures
Computer networks -- Security measures
Information technology -- Security measures
Computer security
Financial services industry -- Computer networks -- Law and legislation
spellingShingle Financial services industry -- Computer networks -- Safety measures
Computer networks -- Security measures
Information technology -- Security measures
Computer security
Financial services industry -- Computer networks -- Law and legislation
Desai, Mohammed Reza
An integrated approach for information security compliance in a financial services organisation
description Thesis (MTech (Information Technology))--Cape Peninsula University of Technology, 2016. === The aim of this research is to identify and explore the factors affecting information security compliance of information security policies and regulations, in a financial services organisation. The organisation has to comply with information security regulations and legislations by righteousness of its operations in light of the fact that any wrong doing together with misuse of data, are continually expanding. Corporate embarrassments comes about due to rupture of security, results in expanded thoughtfulness regarding corporate consistency. Legislature and policies have been set up to counter information security issues. This legislature and policies are not adequately addressing the compliance issues that arise, but are needed within organisations. Compliance targets are not met due to inconsistent guidelines that turns out to be significant in diminishing the financial position, reputation and security of information. This research further aims to explore whether employees comply with laws and regulations regarding information in an organisation. This is done in order to confirm whether governance and human factors play any significant part in compliance. The research is an exploratory study and specifically analyses the governance function and which stakeholders influence its operations in information compliance. The research investigates certain questions on organisational culture and the human factor, do influence employee’s compliance to laws and regulations. The objectives of the research are to investigate which factors, and how such factors influence compliance of information security policies and compliance with the goal of designing an integrated framework to assist in counteracting these findings. The research is underpinned by the Neo-institutional theory, Agency Theory and Rational choice theory. The Denison organisational cultural model and a framework proposed by von Solms are used as lenses to interpret the data of the research.
author2 de la Harpe, AC
author_facet de la Harpe, AC
Desai, Mohammed Reza
author Desai, Mohammed Reza
author_sort Desai, Mohammed Reza
title An integrated approach for information security compliance in a financial services organisation
title_short An integrated approach for information security compliance in a financial services organisation
title_full An integrated approach for information security compliance in a financial services organisation
title_fullStr An integrated approach for information security compliance in a financial services organisation
title_full_unstemmed An integrated approach for information security compliance in a financial services organisation
title_sort integrated approach for information security compliance in a financial services organisation
publisher Cape Peninsula University of Technology
publishDate 2017
url http://hdl.handle.net/20.500.11838/2396
work_keys_str_mv AT desaimohammedreza anintegratedapproachforinformationsecuritycomplianceinafinancialservicesorganisation
AT desaimohammedreza integratedapproachforinformationsecuritycomplianceinafinancialservicesorganisation
_version_ 1718681857813381120