Mind the Threat! A Qualitative Case Study on Information Security Awareness Programs in European Banks
نویسندگان
چکیده
This case study aims to analyze the dynamics in banks, which implement an information security awareness (ISA) program. In detail, we describe ISA programs in three major banks from three Central Eastern European countries. We examine how the specific context shapes different phases of its implementation. The contextual differentiation helps us to discover how specific characteristics of ISA programs affect employees’ information security awareness, which is reflected by employees’ perception of information security risks and threats. Moreover, the research contributes to state of the art behavioral information security research by discovering conflicts concerning compliant information security behavior from specific organizational perspectives. Stakeholders identify several conflicts, which affect compliant information security behavior. We use an embedded single-case study to investigate three implementation processes and how they are constructed in three banks in Central and Eastern Europe. We triangulate interview data and documents in the respective organizational context.
منابع مشابه
Prevention is better than cure! Designing information security awareness programs to overcome users' non-compliance with information security policies in banks
In organizations, users’ compliance with information security policies (ISP) is crucial for minimizing information security (IS) incidents. To improve users’ compliance, IS managers have implemented IS awareness (ISA) programs, which are systematically planned interventions to continuously transport security information to a target audience. The underlying research analyzes IS managers’ efforts...
متن کاملPolitical Communication and Financial Performance in Banks: Opportunity or Threat
Political relationships can have both a positive and a negative impact on bank performance, which requires an empirical analysis to identify its impact. In this regard, the purpose of this study is to investigate the relationship between political communication and financial performance of banks accepted in Tehran Stock Exchange and OTC. In this study, in order to test the research hypothesis,...
متن کاملAwareness Training Transfer and Information Security Content Development for Healthcare Industry
Electronic Health Record (EHR) becomes increasingly pervasive and the need to safeguard EHR becomes more vital for healthcare organizations. Human error is known as the biggest threat to information security in Electronic Health Systems that can be minimized through awareness training programs. There are various techniques available for awareness of information security. However, research is sc...
متن کاملIdentifying Information Security Risk Components in Military Hospitals in Iran
Background and Aim: Information systems are always at risk of information theft, information change, and interruptions in service delivery. Therefore, the present study was conducted to develop a model for identifying information security risk in military hospitals in Iran. Methods: This study was a qualitative content analysis conducted in military hospitals in Iran in 2019. The sample consist...
متن کاملTrust, Reputation and Quality of E-Banking Services (Case Study: Melli Bank Customers)
In today’s very competitive world gaining competitive advantage is bound to arranging products and services of companies and businesses in accordance with customers’ needs. For this purpose, gaining reputation in E-service can be quite helpful. Thus the goal of the present research is studying the effect of E-Banking Service Quality on Bank Reputation. So a coherent collection of structures wer...
متن کامل