论文部分内容阅读
组织员工的信息安全行为是保障组织信息资产安全的重要前提,而现有国内组织情境下的信息安全研究缺少基于行为视角的系统化探讨。本文致力于梳理现有研究中影响组织员工从事信息安全行为的关键要素。针对信息系统安全政策遵从行为和违背行为,在整合主要理论和解释关键结论差异的基础上,从“需求与控制”视角和“自我管理”视角构建组织员工信息系统安全行为的理论研究框架。同时,阐明了信息安全行为研究未来可能的研究方向。
Organizational staff information security behavior is an important precondition to ensure the security of organizational information assets. However, the current research on information security in the context of domestic organizations lacks systematic discussion based on behavioral perspectives. This article is devoted to combing the key elements of the existing research that affect the organization’s employees engaged in information security. According to the information system security policy compliance and breach, based on the integration of the main theory and the explanation of the key findings, this paper constructs the theory of organizational employee information system security behavior from the perspective of “demand and control” and “self management” Research Framework. At the same time, clarified the possible future research directions of information security behavior research.