An integrated approach for information security compliance in a financial services organisation
Thesis (MTech (Information Technology))--Cape Peninsula University of Technology, 2016. === The aim of this research is to identify and explore the factors affecting information security compliance of information security policies and regulations, in a financial services organisation. The organisati...
Main Author: | |
---|---|
Other Authors: | |
Language: | en |
Published: |
Cape Peninsula University of Technology
2017
|
Subjects: | |
Online Access: | http://hdl.handle.net/20.500.11838/2396 |
id |
ndltd-netd.ac.za-oai-union.ndltd.org-cput-oai-localhost-20.500.11838-2396 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-netd.ac.za-oai-union.ndltd.org-cput-oai-localhost-20.500.11838-23962018-05-28T05:09:51Z An integrated approach for information security compliance in a financial services organisation Desai, Mohammed Reza de la Harpe, AC Financial services industry -- Computer networks -- Safety measures Computer networks -- Security measures Information technology -- Security measures Computer security Financial services industry -- Computer networks -- Law and legislation Thesis (MTech (Information Technology))--Cape Peninsula University of Technology, 2016. The aim of this research is to identify and explore the factors affecting information security compliance of information security policies and regulations, in a financial services organisation. The organisation has to comply with information security regulations and legislations by righteousness of its operations in light of the fact that any wrong doing together with misuse of data, are continually expanding. Corporate embarrassments comes about due to rupture of security, results in expanded thoughtfulness regarding corporate consistency. Legislature and policies have been set up to counter information security issues. This legislature and policies are not adequately addressing the compliance issues that arise, but are needed within organisations. Compliance targets are not met due to inconsistent guidelines that turns out to be significant in diminishing the financial position, reputation and security of information. This research further aims to explore whether employees comply with laws and regulations regarding information in an organisation. This is done in order to confirm whether governance and human factors play any significant part in compliance. The research is an exploratory study and specifically analyses the governance function and which stakeholders influence its operations in information compliance. The research investigates certain questions on organisational culture and the human factor, do influence employee’s compliance to laws and regulations. The objectives of the research are to investigate which factors, and how such factors influence compliance of information security policies and compliance with the goal of designing an integrated framework to assist in counteracting these findings. The research is underpinned by the Neo-institutional theory, Agency Theory and Rational choice theory. The Denison organisational cultural model and a framework proposed by von Solms are used as lenses to interpret the data of the research. 2017-05-15T08:12:00Z 2017-05-15T08:12:00Z 2016 Thesis http://hdl.handle.net/20.500.11838/2396 en http://creativecommons.org/licenses/by-nc-sa/3.0/za/ Cape Peninsula University of Technology |
collection |
NDLTD |
language |
en |
sources |
NDLTD |
topic |
Financial services industry -- Computer networks -- Safety measures Computer networks -- Security measures Information technology -- Security measures Computer security Financial services industry -- Computer networks -- Law and legislation |
spellingShingle |
Financial services industry -- Computer networks -- Safety measures Computer networks -- Security measures Information technology -- Security measures Computer security Financial services industry -- Computer networks -- Law and legislation Desai, Mohammed Reza An integrated approach for information security compliance in a financial services organisation |
description |
Thesis (MTech (Information Technology))--Cape Peninsula University of Technology, 2016. === The aim of this research is to identify and explore the factors affecting information security compliance of information security policies and regulations, in a financial services organisation. The organisation has to comply with information security regulations and legislations by righteousness of its operations in light of the fact that any wrong doing together with misuse of data, are continually expanding. Corporate embarrassments comes about due to rupture of security, results in expanded thoughtfulness regarding corporate consistency. Legislature and policies have been set up to counter information security issues. This legislature and policies are not adequately addressing the compliance issues that arise, but are needed within organisations. Compliance targets are not met due to inconsistent guidelines that turns out to be significant in diminishing the financial position, reputation and security of information. This research further aims to explore whether employees comply with laws and regulations regarding information in an organisation. This is done in order to confirm whether governance and human factors play any significant part in compliance. The research is an exploratory study and specifically analyses the governance function and which stakeholders influence its operations in information compliance. The research investigates certain questions on organisational culture and the human factor, do influence employee’s compliance to laws and regulations. The objectives of the research are to investigate which factors, and how such factors influence compliance of information security policies and compliance with the goal of designing an integrated framework to assist in counteracting these findings. The research is underpinned by the Neo-institutional theory, Agency Theory and Rational choice theory. The Denison organisational cultural model and a framework proposed by von Solms are used as lenses to interpret the data of the research. |
author2 |
de la Harpe, AC |
author_facet |
de la Harpe, AC Desai, Mohammed Reza |
author |
Desai, Mohammed Reza |
author_sort |
Desai, Mohammed Reza |
title |
An integrated approach for information security compliance in a financial services organisation |
title_short |
An integrated approach for information security compliance in a financial services organisation |
title_full |
An integrated approach for information security compliance in a financial services organisation |
title_fullStr |
An integrated approach for information security compliance in a financial services organisation |
title_full_unstemmed |
An integrated approach for information security compliance in a financial services organisation |
title_sort |
integrated approach for information security compliance in a financial services organisation |
publisher |
Cape Peninsula University of Technology |
publishDate |
2017 |
url |
http://hdl.handle.net/20.500.11838/2396 |
work_keys_str_mv |
AT desaimohammedreza anintegratedapproachforinformationsecuritycomplianceinafinancialservicesorganisation AT desaimohammedreza integratedapproachforinformationsecuritycomplianceinafinancialservicesorganisation |
_version_ |
1718681857813381120 |