Information Security Culture Concept towards Information Security Compliance: A Comparison between IT and Non-IT Professionals

Akhyari, Nasir and Ruzaini, Abdullah Arshah and Mohd Rashid, Ab Hamid and Syahrul, Fahmy (2022) Information Security Culture Concept towards Information Security Compliance: A Comparison between IT and Non-IT Professionals. International Journal of Integrated Engineering, 14 (3). pp. 157-165. ISSN 2229-838X (Print); 2600-7916 (Online). (Published)

[img]
Preview
Pdf
Information Security Culture Concept towards Information.pdf
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (483kB) | Preview

Abstract

This paper examines the factors determining a positive Information Security Culture (ISC) concept and the influence of ISC towards ISP compliance intention (INT) between IT and non-IT professionals in Malaysian public universities. Partial least square structural equation modelling, using PLS MGA, is used to assess the measurement and structural models, and to compare the results between the two groups. Results indicate all factors have significant contribution towards ISC in both groups, with two out of seven ISC factors have significant differences. This study has revealed that although both groups have the same ISC factors, IT and non-IT professionals have significant difference in terms of believe that Top Management Commitment and Information Security Knowledge are required for implementing a positive ISC. In addition, there is a significant difference between these two groups in terms of the influence of ISC towards ISP compliance intention. ISC has less influence towards INT for Non-IT professionals compared to IT professionals within the same ISC. These empirical findings would benefit in formulating better security strategies by providing appropriate efforts for different groups of employees in the organizations. This study also provides a total cyber security solution for improving information security culture and employees’ compliance towards Information Security Policy.

Item Type: Article
Uncontrolled Keywords: information security culture, information security compliance, multi-group analysis
Subjects: L Education > L Education (General)
T Technology > T Technology (General)
Faculty/Division: Center for Mathematical Science
Institute of Postgraduate Studies
Depositing User: Prof. Ts. Dr. Mohd Rashid Ab Hamid
Date Deposited: 29 Jul 2022 01:47
Last Modified: 29 Jul 2022 01:47
URI: http://umpir.ump.edu.my/id/eprint/34752
Download Statistic: View Download Statistics

Actions (login required)

View Item View Item