An Organizational Learning Perspective on Proactive vs. Reactive investment in Information Security
نویسندگان
چکیده
We present an empirical analysis of security investment in the healthcare sector to explore the impact of learning effects on breach performance. Employing organizational learning theory, we seek to identify how different types of security investment affect subsequent security failures. Our analysis is based on data from 2,386 healthcare organizations and benefits from data that have been gathered in a comparable manner across organizations and time. Using a Cox proportional hazard model for survival analysis, we find that proactive security investments are associated with longer intervals before subsequent breaches than reactive investments. Further, we find that external regulatory pressure can stimulate organizational learning and change. However, the interaction between external pressure and proactive investment reduces the positive effects of the investment. This implies that proactive investments, voluntarily made, have the greatest impact on security performance. Our findings suggest that security managers and policy makers should pay attention to the strategic and regulatory factors influencing security investment decisions. The implications for proactive and reactive learning with external regulatory pressure can be generalized to other industries.
منابع مشابه
Proactive Vs . Reactive Security Investments in the Healthcare Sector
Building on organizational learning theory, we seek to identify the performance effects of security investments that arise from previous failures or external regulatory pressure. This study focuses on the healthcare sector where legislation mandates breach disclosure and detailed data on security investments are available. Using a Cox proportional hazard model, we demonstrate that proactive sec...
متن کاملL2 Learners' Vocabulary Learning: Differential Effect(s) of Comprehension-Based vs. Production-Based Proactive/Reactive Focus on Form
This study aims to compare the effects of four types of FFI on second language vocabulary learning. To do so, the study adopted a quasi-experimental pretest-posttest design, including five groups, each receiving a distinct treatment. The participants were 80 fourth-grade male students ranging in age from 17 to 19. Before the treatment phase, the participants took a researcher-made test of vocab...
متن کاملProactive Versus Reactive Security Investments in the Healthcare Sector
In this article, we seek to identify the effects of security investments that arise from previous failures or external regulatory pressure. Building on organizational learning theory, this study focuses on the healthcare sector where legislation mandates breach disclosure and detailed data on security investments are available. Using a Cox proportional hazard model, we demonstrate that proactiv...
متن کاملThe impact of proactive and reactive focus on form in multimodal settings on EFL learners' comprehension and production of modal auxiliaries
The major objective of this mixed methods research, which considered elements of both quantitative and qualitative research approaches, was to examine the effect of two different types of focus on form instruction, namely proactive and reactive across multimodal vs. traditional input settings on Iranian EFL learners' comprehension and production of modal auxiliaries. The participants of the stu...
متن کاملDeveloping a Model of Internalof Internal Organizational Factors Effective on Tacit Knowledge Management of Social Security Organization: Grounded Theory Approach
Introduction: The need to design and establish an integrated knowledge management system is one of the strategic issues of the social security organization. The present research was conducted with the aim of developing a model of Internal organizational factors effective on tacit knowledge management of social security organization with the Grounded Theory approach. Method: The current study i...
متن کامل